{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:19987cdc-d919-54fa-9066-756e8a099b50",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-aop",
      "version": "6.0.12-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:7285046c-fd0c-5b98-b31b-30094717daab",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1be9f567-634d-52db-a2b9-7561b11e4d16",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c3f7e28-a8dc-53dc-bb41-28cfa716b4b8",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99af734f-8905-5720-a819-473608651573",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:894260e9-e28f-560c-aff2-bfa4b6b230a2",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:590fa6eb-b9e7-5a74-af74-810801edb7aa",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c775f75d-d79d-5155-aecc-f85084911341",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40cff6bb-bbb4-5c11-a3aa-b16c036402d7",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f5e7336-c215-53f8-a53e-774d95bc8929",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2e4f7c8-a25b-5edf-be58-b59a3ceb01ac",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da87b0f9-8026-5bcf-9889-41a3684b1ced",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ba4cd09-c585-53b1-a430-e895022bfabf",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:061baefa-3928-59cf-b2a2-fad12cfa4d3e",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35de6715-ce2f-5213-b1a9-abd534858c95",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:800a3518-9383-50de-b8be-7c0f1eeebdff",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2cb262d-c3b3-5fa5-a106-07faa5903048",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15f44aa4-f8e7-537a-9b34-b13612b37b80",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6f95125-21e8-5c13-9cb1-6534783dfe92",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:705444ba-dd1e-56a5-a11a-514b10341e84",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7703d8da-e605-5785-a7fd-925aeeb6393a",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.2 of org.springframework:spring-aop. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6f03bf5-529c-5728-9045-9999ec6bb70c",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c31369e9-6a67-54a3-a842-1d8d22b7bd73",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4557b579-91f6-52c2-8582-57ce6c864fbf",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f278fb5c-c86c-5fa0-bc69-7b23a53816c9",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8646b599-7790-5211-91ad-2e0dfdac9b5c",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30bc30da-2457-56a8-8141-7d1b75248979",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb6d8a98-bc29-5cb7-a714-e3888bf4bce2",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:78e65e56-0853-52b8-a62e-5ea7d0525143",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f617683-4289-5d5e-81b9-5579351475ed",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e1f96bb-244e-5d41-af41-64fe887be7db",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d2e51dd-70f5-5c00-b950-181fab702dcf",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6d86d82-e5a4-5103-9a52-cbac6ee955c7",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a177e620-01e1-5076-a31f-83d5085b510b",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dac35513-8c6f-596d-8067-f2f8017bc571",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be0659cc-bbdc-578a-8b11-f5267cdc9330",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc88282a-635e-5d83-b461-fe1d2301d271",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4ccfd9b-56f0-5f12-90f8-3794064fbb0c",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b1de9f3-f269-5b43-beb9-68c81d367077",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43db0d6d-4079-5c22-9a6c-d3b34abb8b9b",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c63af2c6-3b6a-55f9-90b0-e80c84c0ebb9",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71b238a5-c44c-5a24-929d-0cfd4fb18933",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c75676d8-41a3-58ad-9bd0-8e128470ef38",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df9b350a-ec83-5bb0-8fc3-902fe3de62dc",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d7f57ca-36d9-5d3e-8ca8-d848fef89483",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4014aac-b91b-5eb9-bdaf-eb089ec6c789",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd68bad5-078c-5251-9677-9411e449bf5d",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd4b6e24-7c59-574a-ad7b-c241c66b26f6",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.2"
    }
  ]
}