{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d2dcc112-d047-5301-b7a2-60998e441530",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-oxm",
      "version": "6.0.12-tuxcare.3",
      "purl": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:1a8750ee-5fe7-5450-bb3b-34b4dafa6512",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52b3d3b7-9f51-5258-a4c2-5e3d705c0823",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec99228c-8922-5cf9-8955-3da671351df9",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5cb4b57-2ca0-59e8-82ab-ee65f87813e3",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f63dc4ce-5ecf-5a5f-9591-7da2a08efa78",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d3dca1b-d334-538d-bd61-e88af8b61091",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29918b88-a937-57e0-8b6a-14fbfa1468ea",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3cc6b214-a294-5959-bff7-2e1d25b9426e",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d42b4250-f37b-5d38-8185-ef6e86669f91",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22742aa1-d9b5-5a5b-bce0-e406598721a5",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:04cff5f7-1153-5c56-8d68-638c08f2cd67",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44b9d1d0-1853-58c9-8cc4-ff8dcd6905da",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cacc39e1-9c6f-5763-a61c-cb454623efab",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffd1ad33-0ec6-52b6-83f7-0fbc8b0bd960",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d56bc9ba-735b-5e33-a77f-1e4e3d0fa05f",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d688a951-07bd-59d9-ad8d-1636448e2336",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9b98e50-bdd1-52cc-845c-976d340aeba1",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e263f13-25fc-58eb-800d-692e0a0a56ab",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8ee4ffa-46aa-5c67-8ca6-e263894fb24e",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebba8c8e-214e-5c75-b10a-ba6cf1d568c1",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.3 of org.springframework:spring-oxm. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6adbf30-3685-5eaf-983a-52afcb3841e6",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81a01fac-1f5e-5426-949f-3efdd6ce6f3e",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c86f559a-32c8-55a8-bec8-b5345fc9f498",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1760dba-383f-5d87-84cc-50731d128156",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97ceab61-78b1-5695-8bf7-2c7e78174488",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0687e65c-2ab6-529f-a47f-9bbbb18e7388",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ea2fde4-bdae-5f73-9c6d-0943b95d113e",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19ee847c-49ff-566f-8fa8-c48fc968fc87",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3e8ac86-ef7a-5ff3-815e-3b8200ef38c7",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5217ac81-9e7a-5592-bf7a-6d0ed23cb4b0",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0d82384-3aec-5155-b480-704be77b647c",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce23bb36-f1df-54f0-b2ff-7bea26aeae2c",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e155226-7727-5203-9979-a83ad00160b8",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7c64f28-52bf-5b9a-806b-b931a8233003",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e0788a3-b361-545d-853d-8b5ae58568ee",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c42d2acb-c213-535a-a465-d24f028b9d39",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2f8bdf0-6178-592b-9d43-8757e62472de",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b6e46b2-e394-5e2c-bcad-77761e0c998f",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b731a5f-a4b7-504f-bb2e-9231e113cb00",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f8b290b-d004-5243-a12f-075e77d31ee5",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7ab6d5c-ae24-5d61-a98a-43a3b3b3bc81",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3000de8-4f4e-51cb-837c-e290ac2bd9a7",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68121ab2-02a0-5516-a2ea-ab6200bdaa04",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de0f07d2-71a1-5849-ad19-28175ec299f9",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:739cec99-6a42-5546-85c5-1a7dc93b7cd4",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd7e6aea-6a86-560d-9cd4-0be053f15fef",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14fe01b7-a775-5e7e-a70a-9d22de2145ae",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.3 of org.springframework:spring-oxm."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-oxm@6.0.12-tuxcare.3"
    }
  ]
}