{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:44fa3eb6-c2cb-5dce-92d6-f3476046f4ad",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-aop",
      "version": "6.0.12-tuxcare.1",
      "purl": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f2a51fb0-1d04-53d1-8958-7a67921ae968",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5540154-95eb-5b84-a131-c80648c0969b",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a621c2eb-ee35-50b2-98cd-0e530605fdf6",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdf138ca-3424-5d4e-9876-c9dbbc37bb97",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8be25880-0903-5ce3-98a1-3bdc597b31e3",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b28d004-9709-597f-bf58-f2171f42a49e",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b0a510d-8b5e-5e1a-832f-42c2c8b826fc",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:404abdd2-d524-56e8-9dd3-71ad8589d6fd",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9d0902c-e5c1-56e3-a06e-64ac617423c8",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5716f949-91c6-5e2c-a5c8-785649d9a12c",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:529d92d0-a39b-5050-adc0-20019f1e485a",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:135fffe1-d872-59f5-a85a-33d0d798c035",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb340699-0c78-5fe2-a006-bedeb38576ae",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da8bbad4-e408-5a72-8628-24bb84b2b412",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fba79771-1efc-5fc6-9878-f7c5ae87c2e6",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7c48f95-8d31-5fc8-9267-e13740ae3f9d",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aac2a92e-072a-56a3-b84a-38242c003054",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9a40a7a-5362-5aa7-9280-f4ed6e60fb9c",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f37f30a-049b-535f-8358-3aeb8193e2dc",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46cd7709-31a4-5b21-b55b-1034e1a27a4c",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.1 of org.springframework:spring-aop. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:04aa5216-b17d-5690-a0c9-3ff677464ed9",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:291ac9f2-45a9-536b-af09-248295a1d067",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:130f09c8-e89d-5443-9ea8-d17dc82142aa",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:551c54ff-f092-58a4-a32d-babf72c752ec",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dff4740d-7d39-562f-b8b9-dcf44fe083c7",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89255c49-20b7-5cb5-b13f-09d8a9f776e4",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b64e6055-e984-51eb-8d22-b049a0d01c05",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4a9a0b2-2b11-596d-aae1-4b34d3a0f620",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be9276d9-9da0-5321-adb0-ed6efa93b85e",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33fe32eb-e0b1-578f-9a63-289cd4f0833e",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2ebf7e7-15e3-5ea9-b8db-264f15085087",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b6eef5c-77d6-5734-9015-89fba3cfffeb",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:179d888e-48a2-516c-953c-a361f47120ca",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:704535e6-43e0-55ef-930c-d522ab853593",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77284859-81d4-57d5-bf85-a51a7984f4a8",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f55ba5ed-7232-5cd1-b09f-ae068198efb9",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8063ca2a-5430-5b8c-9e52-1582c74ed4ac",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a4bdd2e-9648-52d4-9f28-a96530cd53bc",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbb6ef04-925d-53db-b8e4-8612d7ce002c",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7607687d-5df0-59dc-9607-52f5008efb76",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ecd10444-141a-51d5-83d8-0283c247bc63",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b65980b-0143-5d10-b9b0-64385b2cbafc",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b30dc46c-8dc0-5e05-9587-ba550a40a7bf",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:283c3dca-275e-5e96-b412-6d73229a54eb",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d25ed8c-c076-56b5-892a-ce2bc224f737",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc54b978-7e95-5e15-91dc-25dea0d223df",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73ec7d29-37f2-5401-91cb-c42eba2b4367",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.1"
    }
  ]
}