{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:9f3d49c6-eb9b-51a7-b73c-ab718d273fab",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-web",
      "version": "6.0.0-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:260c506d-dc2b-5bc7-b147-319c90a6c514",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ac0b402-2c60-5793-b982-2e366b301a61",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8901e3e-36dc-5017-b184-4966ff8263fc",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed2bf27f-5275-5ed7-913a-663b8249839b",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d76bfb49-7f97-5cae-830e-e64004b41392",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e6c9439-a833-5479-a39e-82eb6bb85e03",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dae52a14-a5df-5cfd-b1c2-41a70d0c0692",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6c1ce86-4438-58ca-b2eb-6c3a7e8474e5",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6b5443d-8df9-5823-87fc-6a9fcc8189db",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2aa0236c-01a7-5130-94bd-f9504e3da647",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a5aa686-621f-5f77-9765-14cddf23a083",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61b5daa9-16a2-5d39-823b-f7545e7088f7",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f0fed94-5477-5476-9a9a-9562edd48343",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0972930-dcae-5cf6-aa99-04af92cf6f90",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3f27cbc-dc5f-5503-9592-0b4cf3a62ede",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:515e0472-1b47-54c7-bdeb-89007d966377",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:826027e4-f2a0-5167-8a0b-44ff04e07ef9",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:772abe27-1875-544e-9bbb-28c991f53614",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1538b9dd-9732-57cb-bf56-76c746dd4a79",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1aded8a2-40ab-5aca-abd6-080e705012f9",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dce022c-1dfa-5eff-b489-b94f24ab0d7a",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26646bdc-65c4-5c64-8c54-b80013fe01f5",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0cfbfc7-f322-55f4-adec-44de40904b05",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4626c233-3e9c-51b6-b1a5-3c22e3a617c1",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6e69269-e9bd-5c76-ba58-ad1634b7620d",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82a9d5bf-d786-55ba-905a-f61646df53e5",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4bdb892-c0ae-50bf-af1b-d98a800417f1",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dffdc925-2d0c-5c36-b139-36dbd13e0cf1",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8f95faa-631a-521c-9c3c-ca778f81811a",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26630e8d-8f90-5301-859b-8d48cbb7cc2b",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37a3e0b3-3abe-58da-a11c-66318cf62eea",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61d3baf1-e815-57a2-b6be-26c853c51783",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4d73ab9-3b95-5f61-a749-66eadacc3654",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24d912d8-5a2d-5b84-8c1a-694248167120",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa2c5e3f-5d84-5965-816b-f8b1f791cb69",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:740bc5ff-6eca-5ff7-8f64-783a3e5ead53",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42a96623-6af3-5383-994b-3c5cc3fe1c77",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:faa2a04a-cd99-59f8-a93f-cc2299e58dc1",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b5c14a5-aa4e-51e4-9a57-00fa9e52782f",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:083bfb47-a9a6-588b-96a6-7a52613ae023",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f78959f-63da-510e-b9c2-bea47fed2b8d",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:829f0e34-ad88-5293-b9c3-086976ea9151",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:903e5478-b039-55c5-b27f-d67b2ebefe22",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48439d23-32df-5c71-b9b6-19516905d469",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9eb25ce8-64a0-5822-9c64-d0b58c0b8645",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec6bf8b6-4c81-50b2-a45d-fa516481db6f",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:103332e7-dbd3-5fcb-b987-c2d1d864ee6c",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:431eb52f-89ca-5b78-b645-7ed7966cfd40",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-web@6.0.0-tuxcare.2"
    }
  ]
}