{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3de29413-5c26-5774-bb4d-d587fbccc8dc",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-jcl",
      "version": "6.0.12-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:2f58268f-7ea9-564c-a3e6-2750e5a3db0f",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:970a5292-b7ed-5263-96ad-dfc73f8c78e7",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:407ab02e-5271-5309-9adf-9d30838efc00",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:803de475-72b3-5cae-a9cc-b26a659251d9",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9450d3c2-8a1d-567a-b5f4-a90f1c6ce583",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14c25ce3-be11-5184-9603-961984c886b1",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:271ddf66-95a1-536b-83ba-0b4319069ce1",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a36960ba-b0d9-57f7-8c00-4cd882e4b7fe",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74d20913-1685-502f-a079-645eab8f2d1c",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cc35f68-b247-504c-b279-fecc4006cc8e",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba3cbf12-df41-595c-848e-09cdb4046256",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bff095c8-61a8-5f44-9fda-3c63368bf4ab",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e953bd7-ae3f-55af-89a5-0a1950b3db66",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27f80ba4-4d5a-57fc-b09c-8fed47b7d0d3",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73feb50b-6f8f-5c97-9fa3-8910a5655885",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39519906-060f-5a0b-a2e1-0edf9c2c3722",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2993e938-1c88-5056-b1a1-d7dc776dde79",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:780aa676-affb-5825-a606-724d662db9e1",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08b620f8-800a-518e-b900-cee6c7af9ad1",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:003921fb-832a-5fe0-a23f-7f49792c7df1",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.2 of org.springframework:spring-jcl. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f529a99-68b2-5f39-bb6e-8b662c6ea328",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3760f093-90be-567b-912c-70028980511f",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:548a31ec-e166-555c-b808-9b40472e1560",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6677891b-4d21-5dda-b8b7-ba364bb613a9",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec250675-242a-5c14-b90e-164f8d501520",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33c19d19-a025-5a31-ba6b-96ea83a6bfa6",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:171c7c7a-f492-5c7e-967f-bc1f3bf13e3e",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f09ef1c-dd6d-570f-a208-3ef502615d22",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fa6b070-f651-5a9a-8f9d-4f996f03f404",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60248bff-9bcf-5b44-b569-493d4b64103e",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e32d890-c74f-59fa-b03a-fe271d839950",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1522f1f-5ed8-5c91-b130-000e00db8f43",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55ae9eec-25d8-570b-8517-42c26386cd9c",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4128ecb-1232-5555-92c1-0db1025a5087",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab314984-e278-5013-821b-56247b03e184",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2056eb4a-35eb-5159-be4d-49072ed5e672",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9b7ddd0-1821-539b-b401-27d4002ae807",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70ed3cf2-7e34-5bce-b87a-7a5a61b99a5d",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c29047a-f2e0-5163-8c99-16021943c7f5",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c69963ea-fef4-51ca-ab4d-66ba5914061f",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22650fdf-415f-5d25-bc07-ab33bd4f3745",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:756bce8c-a2b2-54a2-b143-d6fbad7611a0",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8817cb4-84ac-5668-a87b-b9cebfcf6615",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:720abb05-6593-5ffe-bca6-ea0b244de919",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fa73895-16a8-5aa1-8492-04d963d24807",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e1f545c-25b9-5c17-8620-d253596427dc",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc5cb159-40d0-5213-ae14-5203a30224b3",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.2 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-jcl@6.0.12-tuxcare.2"
    }
  ]
}