{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:b6522fc5-9905-5f36-b84a-b2d9024baea4",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-beans",
      "version": "6.0.12-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d69af484-2c15-5b91-bc49-4962d89ec6e8",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c6bac8b-e096-5b68-9640-d8343d49525e",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58998fb3-9b62-564e-a929-951cf3a591fc",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a9c84f4-0d9a-5960-84ea-e24c7b49302b",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b570a89-6424-52de-b4c8-b07d119db551",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b0869ec-36a6-5b5a-a84a-704af5b78434",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e5b263e-8942-5154-8d89-ee7b85131e9c",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d44237d-8a38-5b0d-9254-e4c9aed0ab08",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:541b58a5-a81c-5487-a247-9ceae8ea6712",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ff85421-16c3-5e42-abf4-5c25e5b7c300",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f807f29-c66f-519d-a757-afbfd6b95921",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9a762c2-a7fe-5b9b-b3d1-42870378e988",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4a0e8c2-bacb-5a55-936d-850a6ce33a52",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c70e695e-e757-52de-9281-f2d9b298223c",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26d911f2-5982-57e2-ba3c-e407a27d1829",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2270a863-3b28-537d-92ea-b7b670a50a0f",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f780589c-930f-5fae-8c66-4e7943a4961b",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09e0fec8-a6b9-55d9-bda1-4190ea6e4443",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c63632ba-921f-58f7-821c-99cdba0d5284",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1ac4cf7-e1a1-53f4-b9e7-f7222b5062d4",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.2 of org.springframework:spring-beans. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8dfa6791-aa7d-52d6-8827-0564dcd2481f",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5fa1a1d0-8c18-5954-bd6a-6887855b6fc6",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03310ab7-2101-5a1d-a6bd-81dc5fee0239",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5281c4e3-3902-5517-a306-cab93cab207f",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c75961c-4338-5a91-87d0-3d7ab426a294",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8af244dd-54ac-5738-bb6c-ddffda4c7970",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efee9253-670b-5c1d-9bc7-0af09b0a84d7",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e7190a6-c276-5506-8d16-fb7b39bcf2ff",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f7ab695-070e-5385-ba6e-0edfb530b229",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23dd6796-2aad-52dd-9ebf-a484b1d73ad3",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3607e1cb-2c02-5b1a-9099-65ca937dfd1b",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc0a439e-2173-5902-ab30-a38d7da5f5da",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3fcba8e7-baf0-556c-a120-3d82b7bec09c",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33e0a130-d82a-5d89-9de0-b63bf05f1f4f",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bab6463-3f6b-5f21-b417-cccb8ee227c9",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0c7a0d9-85a9-5907-8345-25bbfecbb89c",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8acebb8-4e9f-5de1-a0b7-9a049b3b222b",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90a31b09-2e9d-5271-a9e2-05f5f2cc0c35",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:108782ef-b3d0-50f8-af1b-dfba0e693100",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ab4be9a-2984-556a-9ef6-98d46b7b9397",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa52b2c7-a8be-5d60-81f5-09da49dc8670",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18d30034-040b-5a78-abd2-db74fff9951e",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca59eabe-2d04-5565-ad70-ef916ade592a",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1986fdf2-19ab-59e1-b78c-ca66f27fae3e",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46d454ae-1962-57ce-963a-f58d4da40db3",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5926efb5-df06-5d23-b7b8-89e2bbce7bdd",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9ff53ad-39bd-58d5-9ac5-e5e1f89e01c4",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-beans@6.0.12-tuxcare.2"
    }
  ]
}