{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:031d9c1c-14e3-5d29-892f-2ecbdec0ab08",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jasper-el",
      "version": "10.1.18-tuxcare.6",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:6f951212-e135-55bf-8b7d-4636e90ce03e",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:155ab5e3-8f07-568e-a1aa-de02b39cb9bb",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01bb463c-93bb-559f-b91a-6dd2649624f3",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60fd0d3c-e173-5079-bdab-497d8fdd4350",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49a2b630-b42a-5585-ba82-5f1d82b5f5ef",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2855c920-24a3-5336-afff-40ecea3aab44",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a52fced5-ee8d-5355-884c-31e3f93c010f",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:beae1f52-2f5e-5c5b-8d98-f526638850be",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30abfdf0-63cc-5eee-8e1a-3f89bbb54dc7",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:531cc8dc-c910-5202-bcd0-a6ec14238f74",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4aab6ab3-dc01-5aa5-89cd-d90e1953b693",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:288ee751-94be-5bc4-99fd-c55b7b5e1334",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd98b578-ffd7-576d-804d-5c35fe306e0c",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17204071-572d-5d84-b6cc-2bbc5b054d58",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a648fe4-e2d8-58d7-a028-f83f26fc43f8",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12010d90-51ed-59d4-a714-3ab4bebfe04f",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e795ce8-f4fb-5a04-b142-b5c10c9d7631",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1d055ed-0abb-5a43-bd83-a60955edec06",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82b6d2f1-5a39-5ea9-9b07-ea95c4777b4e",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac57d7f4-9fdc-5e77-955b-5be1d120c312",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d3ed0c3-f2df-52a5-85d2-a4366f223a1b",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da7e9402-18e0-5ddc-9bd8-d7eccb40c7e8",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc21d27e-8e23-5de6-9a03-9545ae11c522",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:722a21d2-2e8c-5351-b547-e4c28b50aff2",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a167469b-6dc7-5762-ba25-ddb68e1c609c",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afd49ef9-df15-56da-8358-f2f2068d7120",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:610da4d2-e260-5f02-817e-0ed1e4222316",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84249e34-f18e-50e9-9087-6b84c91feaf6",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29145 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ab364f0-0325-5818-9bcb-3ba9931a1f22",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19c87655-66c6-5f42-938d-934011d19290",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36d9e910-e4f2-527f-9ab2-507e7d38b11a",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6954b67-5caf-5c8d-bc60-bd79e5a0b01c",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34486 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8414e317-dc9b-557a-9b77-a375ba74a719",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34487 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64c39f1e-1fed-5228-93b7-768aa15e1df2",
      "id": "CVE-2026-41284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41284 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b1d71cc-982a-586f-94f3-e1a1d199ae2f",
      "id": "CVE-2026-41293",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41293 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bfa4791-eb97-54dc-9067-3f3bb569ce42",
      "id": "CVE-2026-42498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42498 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8586e39d-b8b3-5098-9d15-3fcbc6868a66",
      "id": "CVE-2026-43512",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43512 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82a9b0be-f98d-5506-97dc-51c62079adfc",
      "id": "CVE-2026-43513",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43513 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:482d585d-b6c1-549f-8879-98a63573b1b3",
      "id": "CVE-2026-43514",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43514 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7e4b211-becc-583a-a2a9-654415888df1",
      "id": "CVE-2026-43515",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43515 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.6"
    }
  ]
}