{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:60af6aa8-84e9-58fd-aac6-aae96dfde8de",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webflux",
      "version": "6.1.21-tuxcare.12",
      "purl": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:c5ffdd4f-4ef5-521a-8c49-f3c58512944c",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-22233 does not affect version 6.1.21-tuxcare.12 of org.springframework:spring-webflux. Version 6.1.21 is not affected by CVE-2025-22233: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: ee62701f5634e904e42e218baad142cea2bcd332\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ecd415f-59cb-5922-a34b-427e06043869",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:783f63cb-3d05-543c-96df-733546e1d906",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d4c80bf-53cb-5738-8836-172d016b4a4f",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12402042-f797-5b94-bd9b-d72c110c6abd",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26365106-249b-533d-a583-7f0a9c46188b",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c3c8a31-67ef-5e08-9074-a57a2e19baea",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c46b186-61ce-502b-9b6e-4b2d8ffdc921",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8adce45-1bd1-5d47-b8d8-d10a4a8a3212",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cac385f-0ccf-5613-a2e3-bf43917be3fd",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2a0d8d9-9381-50ec-940d-92e8fc5b9f1d",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:194eebc9-388c-54a8-b8f3-6eacb9bfde77",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7742f8d-6f5b-5de0-a6ee-219579a43618",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d07c877e-d3f3-5858-a741-3b1337f7dc56",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f00f2102-80be-5ad4-8ff2-c3391c9481c6",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8874f473-925d-5a5a-a99c-a8e09b41e6df",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98755a16-19bc-5410-b3b9-c7de34ea55ce",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:626a1eed-b5df-5f5a-93f7-762865b961c5",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:369aa062-9f44-5c32-be40-b427d59722c7",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9917c47-fe88-53bb-a136-20cd954c2864",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3dafac48-369a-5155-b39b-fc3ec2c3cf1c",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99561d65-d057-5d94-bfb3-30653352fd14",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e5180db-7540-5b2f-90df-6fe8f6015d0b",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bdf1916b-69e8-58b6-8b9f-dd04f7c7f76d",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8e38842-8312-5c1e-8cec-e3f75ac1219a",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e64325ab-2b5d-59b0-be62-0c53156c5151",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80ef01b2-ff9e-5e88-b2e5-24610b0a7af2",
      "id": "CVE-2026-47885",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3aeb62e7-9326-5efc-bed2-db094a6e64b6",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:462225d1-faf8-591c-b5c6-cc2c8809b5aa",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef32bf2d-3ad5-5203-92e4-783379cd9013",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09e9c254-a045-5da0-b264-395d615a4016",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75f8c83b-799d-5403-9bfb-1957e62f29b6",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34bbccdb-dfe5-5d49-b98e-3382fd4f610a",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a04cfc79-1165-5070-bbc2-c8553b745332",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2282961c-627e-5000-a3b8-f739b7567c6b",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f8d5b23-c312-5b6f-930e-26fdf1529655",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9814f44d-8021-5af8-a83e-585437165c96",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d1b98e2-b1dc-5fbc-bcca-3e8adaa4b6a4",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2612fa8d-2e0d-5215-b1bb-1d9f86ce27db",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.1.21-tuxcare.12 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webflux@6.1.21-tuxcare.12"
    }
  ]
}