{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ddd44265-5224-58aa-9cd5-8d8f515eeff1",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-servlet-api",
      "version": "10.1.18-tuxcare.6",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:3d89cdf3-a95c-5f0c-b66a-db8229753649",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb5f7fd5-5204-5ec7-b881-729d1e1de464",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5a4b0e5-d8c8-5534-bfb2-2e793333b1b7",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d8be643-2952-5f02-80e6-4fddfb2edb29",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24ebe81e-2805-5c7a-bb78-ceaa4298f38e",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34f09d5c-6305-5d90-bea1-dec861199468",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33c529ad-73bb-59fb-9903-63856d348e04",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eade3cfe-c288-5f83-a47a-3c7eaadfd308",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3e3721b-8639-5d23-89f9-d82be652f542",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ca76323-f130-5916-a595-b59c73a4a164",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38e7c869-8c20-51a4-9410-6ee34b4802f7",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:242d59db-3201-5d9b-ad25-15af3d40d9db",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29aaf877-1bc9-5dd4-b7ab-38c312270a9a",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:443a2032-d045-5a7e-92b8-5d8b4152459a",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc99d818-8f5f-5379-a3cd-a6ea098017fd",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c9b46a2-6ec6-5124-b118-bf701063b5aa",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccb0d40d-1b69-596d-ab8a-b84320fa7008",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bea2b488-d59a-5b8a-814b-013bcdb1eed2",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64eb25b4-e8de-5bab-92f7-99a40f688036",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25c0a282-768b-535f-a74c-34564b6b2112",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1da19e65-d913-5bce-af2a-ebbe1e5a4c73",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02e3ab30-7433-5b12-b01e-df678eb918db",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c5868d5-f2c5-5196-9486-7ddb7cceeda8",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2d504b3-5a96-5f62-ab35-e652321763b8",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3512e1e6-cedf-501a-916c-a66e3a166a1a",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60a46eed-a385-5f16-ba35-5db3e649ef3c",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb05c6e3-d28a-5313-9831-5dba54ec625d",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e58d400d-28a6-53ff-9172-89713ed4b9bd",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29145 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8b64a1a-2c43-52a2-9722-63ced9d6e6b2",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dda04f76-ccdc-5313-9cd2-82fd5ef7162b",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28db79cb-75c6-5fe3-a2d4-af5c09c54a08",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebee223b-bf2c-52a7-ba32-d1bab7b34ef8",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34486 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0a545ce-4d4b-5b82-a5ee-b2214102f6af",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34487 is fixed in version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9bdd958-ba14-55ca-9271-86d32d98f66f",
      "id": "CVE-2026-41284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41284 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6af16fb-20d8-5ed1-96dd-0afac9b3b756",
      "id": "CVE-2026-41293",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41293 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:068e167c-6a6e-563e-9b7d-f376d37c7425",
      "id": "CVE-2026-42498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42498 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82c52f61-0a2c-5f96-9166-f66647d883d7",
      "id": "CVE-2026-43512",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43512 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d2decb1-23a2-50df-8ce1-61f1cdf9722e",
      "id": "CVE-2026-43513",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43513 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cd3fb4c-d6b6-5ff2-b084-35da10085528",
      "id": "CVE-2026-43514",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43514 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:026fa56b-6b77-59d4-a763-1971eb3f9e89",
      "id": "CVE-2026-43515",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43515 affects version 10.1.18-tuxcare.6 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@10.1.18-tuxcare.6"
    }
  ]
}