{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:252ee612-2453-5638-8a3e-a5474ecbd57c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-framework-bom",
      "version": "6.0.12-tuxcare.1",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:718f2d8d-c1da-5357-8144-d0e2241caca3",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7d54450-2021-5e97-8d70-99d0abf5c686",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfc35785-ae9f-5143-992d-120660466051",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7808f6c-8591-5df3-82bb-70d86f703f7c",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47f4be40-cce5-5d26-9ad2-fc9954a39694",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19fa1e07-b938-54a7-8f05-479551f43ad0",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdda6aca-c4ad-56e0-8ad0-2017ec829b65",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45d53b3f-af82-5891-a7b8-12d9f453fa32",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bc2e520-f2f7-51d7-b92c-88c46e3203fd",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32535537-1e3e-538c-b534-9156583bb1bf",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8df167a5-2cba-5e03-8f42-4f894fa272a1",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1c1eff6-1985-5d6a-8319-e02c1fba1f83",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82386c73-0cbf-53cf-b2c7-b7d2f7adba68",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8604bfa0-d2fe-5dfb-a735-5f7602a1ba71",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85244414-b44e-510c-a31d-01008adf0498",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f9eb197-7235-5bb9-8c20-07431652f471",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f66d15e9-2f08-5eee-9d03-87d58359cb8c",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aea9e61c-90b4-5663-a553-8e47777877c1",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02c168a3-b1e2-5cab-93b3-8949367f2170",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f867a8de-f4aa-5494-8711-a84b2b655619",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c0c970b-c33d-55f5-acc6-8fc14e75ce9a",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6475720-3b42-57cc-a524-932a8eeb5d18",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05fcc74e-b396-5b56-b83e-70baec0bef0d",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a5a4a5d-9108-5c06-83bd-bd50f4dee940",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a2d0678-2db7-53e2-a32f-0175e89e0515",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17705462-03b1-5147-93eb-b7242b4abdad",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6563d8f8-7a29-518b-b0e8-6900151aa6af",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d64c216e-032b-5a9a-98c0-ea2256d0682b",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c67395da-95dd-54ea-96e9-06159215866c",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:569e655f-d054-5308-987a-0acf600ecb3e",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49fbe757-9330-5701-907e-d120ff8afbe2",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7785dde7-0ee7-5dda-ae98-3b85e401f4b1",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2789a4ec-a759-592a-9e9f-b9dd83e3a40a",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31093f1c-0002-5b27-8174-4071ab0134cd",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b33bc0c2-3427-5b96-8711-da8a34d70bce",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37003b75-ce3e-5795-89c3-9685d79a43b7",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e30234bb-4f3a-5644-acb8-572db51ea5fe",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b60c32d-beee-528d-8145-91ec23e46926",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:470fe9f5-390e-5b3a-84a0-4a437e5471f5",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bdb72c1a-04ef-56ac-86d6-afcdfa851ea8",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81d3c915-8b3f-5825-8fd5-f2c5e748a86e",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3edc58f7-69aa-5418-a49c-dce37fe6a025",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bda97802-e4f8-5170-90f1-a71c8be31da6",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e63a1c46-5219-544d-aa45-957b327f6680",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ea12406-96a3-5db7-be48-018971e27f43",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cd0dfe4-2c60-5622-b3e0-26ceb75a7d84",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0620de60-1e89-5138-84b9-145dc7f60e40",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.1"
    }
  ]
}