{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:e84f3ac5-d5a6-5a28-8f9b-cd29097a32ec",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-framework-bom",
      "version": "5.3.25-tuxcare.8",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:28b572ed-6f00-5d9b-9b4c-54d453c07899",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1043e5e5-6c4d-5a38-b35f-3ab5fa270e59",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb678c2e-965d-5551-b40a-bbc8ce15d5fa",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c7dce87-f55c-5a85-8b43-a9351a9c969a",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fba6bcec-f0d0-59b1-9ab1-d2a4a4abae26",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45a257f0-5cbe-57c6-a701-7b8f802a63e3",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c20c5c66-5710-5518-bebe-54a1c23703c4",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4f61933-c847-5617-973a-7f5bc6036d07",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce5988a2-29fa-504c-8353-f27c71a97e0b",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30de4a3a-c3a0-571c-b46a-aab4122247b1",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aee6cbc5-de45-54ac-a9ad-03d326f42ffc",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c5a607c-2eea-55b0-9e7f-1519d73932d5",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:316b1f0c-396c-5ccf-bbfd-2e22b305c9fb",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0bf59aed-db19-5feb-b26f-ba44de2eae6b",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3563ceb3-968e-57f6-af59-e6e8adb4bc37",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b44525d5-538c-57f9-a74a-f862584c2f7d",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c312d41d-ab46-5d84-955f-07d6b6854590",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e32e7de-85c1-5b17-b0b0-d2cb340f3075",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4bd8211-c04e-5a47-9376-6706a8ee3efa",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:315dde83-d3b4-55f7-a3c0-980bda6b54f5",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f83d8fd-af30-59c5-ace8-f0a0e25009ed",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3bd95c82-da3c-5d17-8099-f63676da63c9",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30269e4b-c34f-512e-acc0-87061819ed09",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0baa49e7-0999-5257-b3af-f1235b378452",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7f6e944-8b35-56eb-902c-67b35f48522d",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfbf745a-ff5e-5cfd-bfd2-cb28a87a81ef",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:932a03ba-dd5b-5395-94ca-06f1350b6244",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9970ba80-65ca-582f-829f-d51872c05243",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:123b2f18-3d8f-534d-8388-6a02d1bd952f",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61d78c3c-dbaa-5915-bd89-f7895eb279db",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9c13688-b8ea-5bae-8079-b3f6adc4c6b4",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a60e297f-b4bb-545d-9ebe-62518bd391f7",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41847 does not affect version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom. All 1 patch commits already exist in target branch"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:748d2185-09d3-501c-9684-f73bc813810d",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:027e7759-90b9-5dc7-a1f2-d15d69b10ae2",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46357048-e4f6-5b1d-be92-97adf6b93567",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eedad9ee-7e23-588e-b660-6a813a0124d4",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:414db118-ea31-5a2b-8cac-f36cb3ececf0",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33feb895-fb47-56a1-b569-f6a3c221db9b",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38c18af7-06cc-5b1d-a815-7169598b710c",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed7a84df-589f-53a2-b9d8-0d4777527b51",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6d979bc-578f-5eeb-904e-1ca56e505f81",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8cda42dd-2723-5fe7-9199-bb2f9cd32c24",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4fb92043-c6b2-5fbe-a26e-2467d75937d2",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb26ec9d-1b9f-5d36-ab18-393b67777756",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf2d0a48-6490-5cdf-9f9d-18a19c8d2ccc",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87a5bbfd-d9b9-5221-800c-435cd9e5da9a",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:324256dd-7e45-5b15-89f1-dc4deb3e617a",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:665e2edf-fec6-5ead-9930-e4612f9763ae",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da6870ca-3d5c-534e-999f-7f93a773ec75",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a83eb145-cac2-5142-9739-3aa0ce09620c",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92724a5f-93e3-59f7-b9fe-626fc0797fb6",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:050a5fb1-84a2-5dda-be61-dc07aa929293",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8ae1492-a372-543d-b77f-7d612a534cb6",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.25-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.8"
    }
  ]
}