{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:bc113539-095a-5a98-b4a3-7817676aefa3",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-framework-bom",
      "version": "6.0.12-tuxcare.3",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8fb6275d-bbfe-560b-99c7-f103563b7f84",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d446777-708f-592b-ae68-3aa544b96906",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36f548c4-8ed4-5d2c-8c37-c433682a2df2",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:262619d7-4205-59a8-8a84-982e3081ffb8",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41c39540-3b1b-50ee-956b-92a8a9c18b81",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2139f4a-47cd-583a-94da-46a939b622eb",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5451509-27b6-518e-9a89-c14f39097569",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4be318ca-cdd6-51fa-802d-c3c353fa78f2",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9acec530-8f8d-576d-9c50-664f882c696c",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7c9bb93-1fb9-5d99-a02e-bc4b38fa9059",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20e19731-52ac-5e31-9547-09b1a1462ce0",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4cb2273-738f-549f-9b7d-cc3a721c31cc",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:04d0d608-6a54-5ae3-acfb-a584fa50ab48",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c97a631-7e2f-5c2c-954f-a68843df965a",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de4b04fa-f625-53ef-ac55-9e26b0c5fb66",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36fe74ed-36ed-502e-8e07-39488ca1b9da",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcf31bea-f1f4-524e-94e0-7cd0d8d83f1b",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e955bae4-6caa-528f-b0c4-69c643d91beb",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebc30807-1db9-51b8-8103-45215efbc072",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec946d39-067c-58c2-914c-a9b20aad0261",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dabd5e40-4840-5534-9fa5-55c74965c70c",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94329ff1-fb47-59fb-b1c3-7579e278cb45",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b332450-5cba-5f1d-83de-25f274fe577c",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c727e85-408c-501a-9e80-689070df038b",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d7fbf4e-c791-5dcc-8059-22b4bb5e775b",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d6880e6-479f-5773-8123-57b403e97546",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a81d376b-a9cc-573a-8087-08962c010333",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97b1f8a8-0500-5a4b-9695-29fd80b1f7ea",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cf9dea1-8567-5ec0-9f7b-44980bad7699",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:943cfe54-8f92-5325-85e0-7ba05a016758",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb34d790-112d-5477-bf3d-01e7b5a3e4ef",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e6d1fcd-8a1b-5bcd-94d1-c50c31760053",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:430f62d5-0609-52e6-85d8-b8fe25fcd2f4",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f22b61ca-e1d6-5b6e-ac94-05bfab11a416",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d33ef477-a08d-5c8a-b30d-5e36fa547f76",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfff40da-9c26-5f36-8129-20dcb9ead3de",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abe93435-0619-58e2-8f85-448360cd1e7d",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd8363eb-c33b-5db2-8f76-1cb15d009a6e",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b1e1014-3ca2-501d-a178-6b3579e787ce",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd426400-1f3f-52cf-a767-13636ba5717d",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8069816a-6a3f-5926-9c11-2b1a5ba04d33",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ec2321a-0e41-5fbb-bcae-6d1ca622c441",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cfc23d5d-d8a9-5124-ad88-0a714a9c968b",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6fe67ed-6fe3-55a7-b215-13a23fa0cef3",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f791b70-3a79-56bc-867f-835c8c96f8f4",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee958700-e141-5141-87ad-29764412d90d",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53a29486-35b6-5516-969c-7914dc6eeb10",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.12-tuxcare.3"
    }
  ]
}