{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:bdccc673-c1f6-514a-a581-fc5db2bf3d1c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-framework-bom",
      "version": "6.0.12-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ad89c572-ee65-5cf0-926a-1012cf89f0a3",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46df9804-9118-525d-845f-c493d686e61d",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0911d79e-a906-5336-85a3-8dfe2e5e0f30",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a9e41ea-789e-5c25-9f09-ea739118b6bd",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:172c0613-b80a-5a32-9e28-8293af42c6e1",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2c85380-8a65-58be-9229-cc7eaf2a9b89",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:baa84d52-59ed-5128-aacc-5bf3253f6728",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05634293-bb6b-5766-87ae-668b881a8360",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57d90a45-b6b5-5610-9a60-fbf40688544b",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3347649-2da5-57f9-9170-f116e18a581f",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cf41352-d5af-555b-92b2-577ca110c72f",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ebcb98d-0190-50e1-8248-cfe6232a3197",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:460568e4-d432-529c-8180-cd6f330b5add",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2eddc463-914a-54cd-ba5b-fcd0083f9465",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a98822f-c20e-5371-bac6-1a1c09388e16",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a05022ad-7a0f-5b19-95e8-82f8817d7d8d",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c82bb22-52e3-50b4-a66d-b8c5d0e5e11b",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:221bb352-906b-5fc8-ade6-5ef367ac4715",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6056007d-3a0a-5f85-b3b3-eb6fb5347ce0",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3031a19-09e5-51a4-ab43-86686a5e092f",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0359ec3d-6a0c-5bbc-9845-645d3c2e46b5",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9f56741-e816-5f68-8306-6e7fcc09ec57",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01298918-86c1-5cf7-a7b6-2f5ff90c9397",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a00205e-a485-5dca-9ab5-bf9d67dd5b33",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a157e90e-4ece-526a-94fe-9eb71631bfe9",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82d54624-51c0-511a-9c74-50abe1afea93",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31391f94-f3c9-5cf4-8e5f-ac008fe94ac0",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4d41de0-1168-5231-abb0-1ca07840e71a",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c971bda-178f-58b4-b061-f28331c45f87",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cad69481-cba4-5276-9ba9-b74d7101e6ce",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:990d145b-fde5-56be-a7ac-bf8e39b622c5",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fef0e539-76a8-5c9b-911d-54aa0121650a",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f0f06d2-56fe-57b2-a7a0-d571eed17187",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:140ff131-9bcb-57aa-be2b-f3aacdd28537",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c6e446b-e2d8-5cd7-b6f5-0f72471da3bf",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a681acf-a5b6-5272-af7b-f49f4e91ee7b",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b861769-4c71-501e-bd93-720f92738922",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f6bd367-eaaa-57c6-90aa-fa54b49b33ff",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cdc2589-539a-581f-afc6-8348ad44c728",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f51ac21-8903-5be4-94a8-8b71151633f8",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e78ad5fc-eaa7-5925-9119-e2cbeed81500",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79cf839f-9636-5421-a436-2f3989ffaefc",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31d77ebf-c602-5464-9177-afda1713ff54",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa2341d6-3e5e-5f4a-b73b-dca5a528c6f0",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ecb6bf7-e405-5278-bcf9-f1e65814e586",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9af04c53-2a7d-5962-8dc3-e2b192ee806c",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a881dc29-86c3-5c0e-b109-6e8739e5666e",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.2"
    }
  ]
}