{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:891090aa-6df0-5f22-b16f-15d8d913ba07",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "5.3.25-tuxcare.9",
      "purl": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:81fdb60e-d721-516a-a221-d371195a600e",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a9adb6d-6cf5-502c-8818-cb8767920a1a",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86f87cfc-2415-5a59-8218-f8fc26be2240",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a75ec305-cdcc-5d71-87f1-7c2b38e7e3e4",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b3a3367-d30b-5da7-87c1-1c1863422146",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d94fa6cf-3f56-5113-b60b-16bd76c4de3c",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f9d250f-0500-5a70-bb03-13f808533c6d",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9476a8f8-aa4e-5d7d-9996-b84b1332ea11",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa046359-c813-5b4d-8431-285f81419d23",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed192b0a-8357-5f16-b88c-2e9d649a60fb",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6efbd266-edcb-5548-8ba5-af9950ff5bca",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c47e7df-0a81-57d4-99a6-3d53b3461788",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1215423-533d-5bcd-8397-59d717cec3d3",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a08634a4-77fe-5912-8de6-0f57eb391543",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cdacda9-b6d0-5fa5-8fc1-22bb2cb051ec",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5dd6c06-a151-510b-b519-008de7a64cd2",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3f39311-a06b-54a6-a6aa-d77a7da0f837",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99815047-8265-5d5f-a7a9-378c4864494e",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3831fca-fd73-5309-9ddf-debeeb4adce5",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40001741-cbbe-5bba-9b04-ccd6c3be314a",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ddcd733-0687-535c-ac6b-a2ea0a7f8434",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96f4c858-5fb6-5a47-ba1b-def4473d60e8",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5c28535-a712-5d14-b827-38120c7ebe08",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3d580d8-d6fb-5d24-9ced-bce9ae9c9b54",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23856553-5b68-54a0-9b8a-20fd82196500",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0a3f485-72d4-56fd-80f5-adbd482abfa9",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:954a931c-7ce4-565e-adde-30ef0b8d075f",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7d37ec5-2906-5c38-b918-1fe9977e753c",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8b3defd-1926-53d5-a693-d19c94376aa3",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab6db17b-1586-5d54-ba15-74c53d7d5c58",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6134ae0d-ad97-598b-9b1e-a81bdf9f0962",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4bb543e-776f-5bd1-ae3b-c62e63d14938",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41847 does not affect version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc. All 1 patch commits already exist in target branch"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b07998f-4b64-5224-8f43-b7e5e6608b4b",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c299c58-36b4-58db-a6cb-87da0b5945ae",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1457ba73-a81f-5ce7-a215-bcbdd93702b9",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0bea40e5-9d4e-509d-96dc-5c5fc5b3d17d",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf5dcff4-6a72-5a08-bed9-77d2135af1de",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3379f944-0d99-52fd-8fbc-1564b97d3594",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44d0ccec-905f-50ce-a3c8-2fc8bcec52f6",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7e6016c-ad33-5cf8-ab36-33d39f8c9653",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02de0d84-aeca-562d-abae-8a16cd8f90ca",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12eb93e2-9e54-5a0c-aa81-005c7752cf04",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69738854-e4ab-5586-9464-b5c697876dc1",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff6bf156-46b1-5fad-b3bb-d0de012b6459",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63ee758b-cb2e-57a6-8680-76b57924765e",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:796565e4-96de-506c-aadb-fc223045b03b",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e65f82d-e544-5da5-9042-10f235d9309b",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:198c6562-0eee-547a-8c48-175a9828c01b",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20a15d7f-2e81-5feb-aa34-adea55319b4f",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a89cbdde-60f7-5dbf-ab1c-8fdda2473ea5",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2eff08a8-73d3-5b2a-8d3b-816ee697ea0f",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6ac88ee-e765-512f-9663-6d24af9dee85",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e20cd1d5-b0a2-535f-8806-6eba5808ade2",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.25-tuxcare.9 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.9"
    }
  ]
}