{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:bb78de8d-fd2d-5a65-aad1-878d533d660e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-oxm",
      "version": "6.0.12-tuxcare.1",
      "purl": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:513f279a-9a40-5199-b410-a98ec06bfe6c",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:218c7ed7-a44d-532b-807a-db0a05829c54",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e03e480-fd91-59c1-b3bd-f8cbaa5c1431",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bb62a1c-034b-59c4-9c23-2662437f1868",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:065ce3b8-0a5e-57ef-92f2-84a21b6e2a78",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ea1844a-0df5-56c6-b5bd-5661044f85df",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25d7ab86-c3d2-53a1-8d8a-8a85e0f57a17",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b0c3d5d-6076-5904-b088-cc79f88d6b49",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42cf033a-d439-56fb-b3f4-08c4ef3c76ae",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7aeaaeff-e770-5470-8be8-df4a1e7ac82d",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2001e234-43e6-57b7-9ee7-dc574a5ced3a",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61ae4173-e643-5a07-aed5-dbed5476f50f",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0537ca55-83b3-5904-b114-d526a4b59cfd",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a23a0a8-6cec-57a9-95de-12472cf257c6",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e02ade1d-d6e7-5a3d-8aec-5965221febef",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b8498c8-f0e5-59e5-be6e-c0912ae47b11",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65b52910-655f-51af-b28a-a066451e3bca",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26ddcece-fe3d-5238-bfa7-d45478450b58",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bbdcbd00-5e7b-59b9-80e9-633d6ee35cb5",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eed34a09-0580-5839-925f-c24ef67d92ae",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.1 of org.springframework:spring-oxm. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfd7ebe0-e9a5-5c9e-8b83-c4e52d7090c8",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e26242b-cd56-5f78-90a4-1921412fa1e9",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5a6e476-0ce3-5846-a712-ad98849b4ae2",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e132f14-05e1-55e9-becd-dd0c40e35e7c",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12ab7e0d-2917-5c8d-8520-a643293df4cb",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c24cb654-bfe4-55b6-815e-bb55fa8224e4",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a08fa040-5a34-5984-a974-de679c8526d9",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08344790-cd03-52a4-94c2-806cb8b12f66",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e83145e-a2d1-5bc4-98df-5fd40dfd840b",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e923b3d8-9d7a-53bd-bf95-489b833e2ce2",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4181a200-b288-584f-b5ee-5173b41ef4bc",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd7673fe-4db0-52e1-8307-905c5c73d587",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:824282a5-f1f5-59bb-8a8d-044d5b70089e",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93bd3158-481d-5187-9cd9-3d58c5e4be90",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62b0bec6-009c-5b9a-84d4-af55ce3408c7",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14270104-be64-5480-8c4e-caf5edb3a3ad",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2ba617b-eddb-541b-a312-1bcc59a04f0c",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3ad84ae-731e-53d5-be9b-4eeb28e67339",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c48d301-43e9-5c80-b5dd-0c21a1c18649",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb55dfd5-3c9c-5d2d-ba01-406a6fef8221",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f07a01b5-29c9-50e8-a13e-1ddaaa2350a2",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55242b4e-eae2-51ce-8f3a-85e53a9eec85",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8050da46-52ec-5337-874f-3b3c544296f9",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e924e661-7b66-5986-a188-c27f0f1d469c",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:584ac9a9-7cf2-50b2-b076-47e2c24308c9",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c2d3953-2e93-53db-9b9b-ea1a87efda99",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a24425ef-7ef6-5779-aff0-117f9f20cb0b",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.1 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.1"
    }
  ]
}