<?xml version="1.0" encoding="UTF-8"?>
<bom serialNumber="urn:uuid:092e9be4-7784-3b41-9ea0-e6399d655263" version="1" xmlns="http://cyclonedx.org/schema/bom/1.6">
  <metadata>
    <lifecycles>
      <lifecycle>
        <phase>build</phase>
      </lifecycle>
    </lifecycles>
    <tools>
      <components>
        <component type="library">
          <author>OWASP Foundation</author>
          <group>org.cyclonedx</group>
          <name>cyclonedx-maven-plugin</name>
          <version>2.9.1</version>
          <description>CycloneDX Maven plugin</description>
          <hashes>
            <hash alg="MD5">9c7a565cf28cce58557d0c621c5ea4b1</hash>
            <hash alg="SHA-1">be882d5a22050bfa9d19090b1420c188617d0e1c</hash>
            <hash alg="SHA-256">698e0f37184a5b28c245c4065fd036dfce253b52f82fbb7113d81d36326cc249</hash>
            <hash alg="SHA-512">c0f0b11026858166f872a2eb54719492e5cecaa0bc9cd6b30b3ecb4a174eed220f4a1b5829d18d6734128e778d3cb3db7ffed177c92866133129cb29081814a0</hash>
            <hash alg="SHA-384">d80964707dfe5caca8c70521d5066f57589304c0a657e6fbc7c0614ea0fc7b3b3dbe7778361eee0f54ba111e9cb0ffcb</hash>
            <hash alg="SHA3-384">80bc3a275d9514bc457461ff52a72add8c7ecbbc01d8912efce57139016c544ee776981851be0a58fa977ab4221f703f</hash>
            <hash alg="SHA3-256">142317d6f245390f4fd2d0c100b16281b8dfc5c0c2cff86943bdcc97039cb699</hash>
            <hash alg="SHA3-512">af0fb9137c90b65d1a07f72e4d51ae509956cdb8800f35c961b037cdda1fe4a14ce3b496cef71ba85f1621affcfe29cd42704ae4191ff0b090a9602087c8997b</hash>
          </hashes>
        </component>
      </components>
    </tools>
    <component type="library" bom-ref="pkg:maven/org.apache.commons/commons-fileupload2-jakarta-servlet6@2.0.0-M4?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.commons</group>
      <name>commons-fileupload2-jakarta-servlet6</name>
      <version>2.0.0-M4</version>
      <description>The Apache Commons FileUpload Jakarta component provides a simple yet flexible means of adding support for multipart
    file upload functionality to Jakarta servlets and web applications.</description>
      <licenses>
        <license>
          <id>Apache-2.0</id>
          <url>https://www.apache.org/licenses/LICENSE-2.0</url>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.commons/commons-fileupload2-jakarta-servlet6@2.0.0-M4?type=jar</purl>
      <externalReferences>
        <reference type="website">
          <url>https://commons.apache.org/proper/commons-fileupload/commons-fileupload2-jakarta-servlet6/</url>
        </reference>
        <reference type="build-system">
          <url>https://github.com/apache/commons-parent/actions</url>
        </reference>
        <reference type="distribution-intake">
          <url>https://repository.apache.org/service/local/staging/deploy/maven2</url>
        </reference>
        <reference type="issue-tracker">
          <url>https://issues.apache.org/jira/browse/FILEUPLOAD</url>
        </reference>
        <reference type="mailing-list">
          <url>https://mail-archives.apache.org/mod_mbox/commons-user/</url>
        </reference>
        <reference type="vcs">
          <url>https://gitbox.apache.org/repos/asf?p=commons-fileupload.git/commons-fileupload2-jakarta-servlet6</url>
        </reference>
      </externalReferences>
    </component>
    <properties>
      <property name="maven.goal">makeBom</property>
      <property name="maven.scopes">compile,provided,runtime,system</property>
      <property name="cdx:reproducible">enabled</property>
    </properties>
  </metadata>
  <components>
    <component type="library" bom-ref="pkg:maven/org.apache.commons/commons-fileupload2-core@2.0.0-M4?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.commons</group>
      <name>commons-fileupload2-core</name>
      <version>2.0.0-M4</version>
      <description>The Apache Commons FileUpload Core component provides the framework for a simple yet flexible means of adding support for multipart
    file upload functionality to servlets, portlets, and web applications.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">e7fb1d376a2cab4732c3c12acf69413d</hash>
        <hash alg="SHA-1">3284839791dc0130ad07d594a05c7c8750aa4dd6</hash>
        <hash alg="SHA-256">d285cd8cdde3d9466208b37c7750454b0b280ea773b19b050ae1e2ddb09e6991</hash>
        <hash alg="SHA-512">c2dcb708c0c9f70e53b1704088512a1cd566921734079e008f665fe9bfbdd06b05e24fed352a06a1e2f27e576a72ba81006cc0d85d684b1a08d3f6f54213a777</hash>
        <hash alg="SHA-384">46538a44217a3cbf048ca330dc4a804c21a5f8a9770daa5de7ef8eba8a03155df5fc1c9e84ab4a6cc9604e5c90da2129</hash>
        <hash alg="SHA3-384">b11c98a9268f0cfff7456a4945a281e0588955c86205cdc42c2d410191fad4528b004aa2e2cc8ae16c19c58719ca20a9</hash>
        <hash alg="SHA3-256">a93c199eb039d6603181037c73d8c3c080e2c53ebc76e610f784a5d5f85f05fd</hash>
        <hash alg="SHA3-512">1d5a8d6a6b341e19f3352764f7100659788ca4a11807ea3d261de1cd7c6b3676b8c24b64baa18ebcb5135bf07e35607ae1903a44b11048a149f2966a24a67b29</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
          <url>https://www.apache.org/licenses/LICENSE-2.0</url>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.commons/commons-fileupload2-core@2.0.0-M4?type=jar</purl>
      <externalReferences>
        <reference type="website">
          <url>https://commons.apache.org/proper/commons-fileupload/commons-fileupload2-core/</url>
        </reference>
        <reference type="build-system">
          <url>https://github.com/apache/commons-parent/actions</url>
        </reference>
        <reference type="distribution-intake">
          <url>https://repository.apache.org/service/local/staging/deploy/maven2</url>
        </reference>
        <reference type="issue-tracker">
          <url>https://issues.apache.org/jira/browse/FILEUPLOAD</url>
        </reference>
        <reference type="mailing-list">
          <url>https://mail-archives.apache.org/mod_mbox/commons-user/</url>
        </reference>
        <reference type="vcs">
          <url>https://gitbox.apache.org/repos/asf?p=commons-fileupload.git/commons-fileupload2-core</url>
        </reference>
      </externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-io/commons-io@2.19.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-io</group>
      <name>commons-io</name>
      <version>2.19.0</version>
      <description>The Apache Commons IO library contains utility classes, stream implementations, file filters,
file comparators, endian transformation classes, and much more.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">3d1fd45f9d2a247c1d05ab1e98c07160</hash>
        <hash alg="SHA-1">1f8d4a99ba72b77aa69101175efc79b0c7dcdd7e</hash>
        <hash alg="SHA-256">824268919b4b62f9f40f08c54381de5993b078f58667e332d17348ae019d72b9</hash>
        <hash alg="SHA-512">98ad3cb92c31b51461c44d06c223a425c3ee8254ad3ddfdc3724e7d14444d2eeac3b054f70be5d4500268f712c1f08779fd5e4360437b4a883c406c0dc3a2c7c</hash>
        <hash alg="SHA-384">b3a8950070de2372be3c05444c203a13e0727bd5ef8c446b7c731dce37d3622509b93a7ffedac2a81b707b73c73bc8d1</hash>
        <hash alg="SHA3-384">9243e8e5354232583e1a269592a4f19e4ee4dc681cf942c10a146be1e4036bcd71bd3f59df78f1916e20c03d7d9bcfd0</hash>
        <hash alg="SHA3-256">b9994550c1fe3140f52b9e2e663f2a4ad1ccc6ca4f19fd3626bfc689ae2f4a6d</hash>
        <hash alg="SHA3-512">e0f4331c5e19afe2d23470066d6d870ac16fdb9b5892cc79d84cfc987d486e28912e9caa3f77fdf1a5de88ae3f8b2e439a5d5ecbf042dcf7c7bca8c89f3d5f92</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
          <url>https://www.apache.org/licenses/LICENSE-2.0</url>
        </license>
      </licenses>
      <purl>pkg:maven/commons-io/commons-io@2.19.0?type=jar</purl>
      <externalReferences>
        <reference type="website">
          <url>https://commons.apache.org/proper/commons-io/</url>
        </reference>
        <reference type="build-system">
          <url>https://github.com/apache/commons-parent/actions</url>
        </reference>
        <reference type="distribution-intake">
          <url>https://repository.apache.org/service/local/staging/deploy/maven2</url>
        </reference>
        <reference type="issue-tracker">
          <url>https://issues.apache.org/jira/browse/IO</url>
        </reference>
        <reference type="mailing-list">
          <url>https://mail-archives.apache.org/mod_mbox/commons-user/</url>
        </reference>
        <reference type="vcs">
          <url>https://gitbox.apache.org/repos/asf?p=commons-io.git</url>
        </reference>
      </externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/jakarta.servlet/jakarta.servlet-api@6.0.0?type=jar">
      <publisher>Eclipse Foundation</publisher>
      <group>jakarta.servlet</group>
      <name>jakarta.servlet-api</name>
      <version>6.0.0</version>
      <description>Eclipse Enterprise for Java (EE4J) is an open source initiative to create standard APIs,
        implementations of those APIs, and technology compatibility kits for Java runtimes
        that enable development, deployment, and management of server-side and cloud-native applications.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">4bcb3175ed9b7aa3f038d082879ec2a8</hash>
        <hash alg="SHA-1">abecc699286e65035ebba9844c03931357a6a963</hash>
        <hash alg="SHA-256">c034eb1afb158987dbb53a5fea0cadf611c8dae8daadd59c44d9d5ab70129cef</hash>
        <hash alg="SHA-512">b810ce040ed0671a3161fb197845f3ae750cd38c474ef54c351b7b127ff3b4d624a26c33450c62474f42c1cde21c65324cda63b1b3ea0515a286e0bcb0c0c9d5</hash>
        <hash alg="SHA-384">2f02e56f5b0a3a7191b6cea6e3b872d8d29503299751c6dabfdf4d61b1ae2b431be9c13801083cd6e516b8f52ab38a95</hash>
        <hash alg="SHA3-384">373855d3aef3be1d54046c33d76daa0a3db62b04e0bfa5957670f17ede4f74426b9d858159e67eb6abc723278f272c23</hash>
        <hash alg="SHA3-256">cb8c3221eb78148915a75489df9d25665cd41b8949ede82c5ee7a792b1b32fe0</hash>
        <hash alg="SHA3-512">689137c5de2c0972392e181a4f03e5a1b3f839238839a28442da9aa91f4e5c2980eb48a0107c0fbcd2d35a44ab8a4d698fa197e0dadf264f3e547043fc15dba3</hash>
      </hashes>
      <licenses>
        <license>
          <id>EPL-2.0</id>
        </license>
        <license>
          <id>GPL-2.0-with-classpath-exception</id>
        </license>
      </licenses>
      <purl>pkg:maven/jakarta.servlet/jakarta.servlet-api@6.0.0?type=jar</purl>
      <externalReferences>
        <reference type="website">
          <url>https://projects.eclipse.org/projects/ee4j.servlet</url>
        </reference>
        <reference type="distribution-intake">
          <url>https://jakarta.oss.sonatype.org/service/local/staging/deploy/maven2/</url>
        </reference>
        <reference type="issue-tracker">
          <url>https://github.com/eclipse-ee4j/servlet-api/issues</url>
        </reference>
        <reference type="mailing-list">
          <url>https://dev.eclipse.org/mhonarc/lists/servlet-dev</url>
        </reference>
        <reference type="vcs">
          <url>https://github.com/eclipse-ee4j/servlet-api</url>
        </reference>
      </externalReferences>
    </component>
  </components>
  <dependencies>
    <dependency ref="pkg:maven/org.apache.commons/commons-fileupload2-jakarta-servlet6@2.0.0-M4?type=jar">
      <dependency ref="pkg:maven/org.apache.commons/commons-fileupload2-core@2.0.0-M4?type=jar"/>
      <dependency ref="pkg:maven/commons-io/commons-io@2.19.0?type=jar"/>
      <dependency ref="pkg:maven/jakarta.servlet/jakarta.servlet-api@6.0.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.commons/commons-fileupload2-core@2.0.0-M4?type=jar">
      <dependency ref="pkg:maven/commons-io/commons-io@2.19.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/commons-io/commons-io@2.19.0?type=jar"/>
    <dependency ref="pkg:maven/jakarta.servlet/jakarta.servlet-api@6.0.0?type=jar"/>
  </dependencies>
</bom>
