{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:468eaaf2-51b8-5eb2-ad30-6ad474b0f81a",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "6.0.12-tuxcare.4",
      "purl": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:0b6e7d1a-26a2-5a70-99fd-ec61410b7384",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b59bf94d-606d-521b-a001-04c7f22c9ee2",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:025984d9-bc24-5c9e-8787-7c5e42c9da86",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16e08c11-bf60-525e-a2dd-844d1c4fecc9",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d00fdb0-58a9-5b7c-9ab3-558873199db8",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:753cb706-4588-502a-a8b7-f79cf2411d88",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec128ee9-2409-5ada-a559-5d95f0686129",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9a39d92-037c-58f5-9b74-365d00a546d0",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6a50043-d573-5eb8-b4b6-3c86b8ba1dea",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d1042b1-1e4c-58c0-8949-f01982755da8",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0be56bb4-1701-5032-8f7c-d47b675a4ea8",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e9f5b2f-309e-5a79-9347-3d696015143f",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d08b961d-abaf-5cda-a4f2-391459ed6246",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48765ade-1edf-57e8-b271-9b0c8dc1ea25",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20de5925-e3fd-5bf4-8e28-916130e4d855",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c17710bf-992e-56d5-b1f8-0286ff3a9671",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:124040a7-a4ba-502f-9d49-53e2d4103956",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7936591f-0e81-5cb1-b273-972ee2434462",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8757d0c-c105-5d4c-b834-326ac9e79a95",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:029c6fc2-bd1a-5a94-be1a-af5fc97e9622",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb9dae4b-1642-57d9-b16f-32574610454a",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10722b24-98c5-58c2-bcac-269a6092d5ad",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c340ee88-b2a3-5a0a-a6a6-7207f09d4924",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb70c679-b917-5095-882a-1a267520a28e",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da8fb00a-150a-52f0-9368-a0ce4169067b",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4b91dc0-70b7-5948-b5d5-82d1769dfeeb",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:879b1d1a-d34e-5ca7-9a30-981d97e966f0",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5bd9e25d-fb8f-5737-b649-c2db4d719fa9",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f211810e-2e30-576b-bbea-c97271dcd264",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0019a326-09f3-5e21-a4fd-345e146957a1",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17784b17-0049-5b9d-bc89-7be6412f2de1",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1011da4e-69f7-5b51-8d22-a4972335b5e8",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11754d23-d8f9-52a9-9f5c-6893f1227d10",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0903601b-b60b-5ead-bfdf-e19eb7dd07e2",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80777c26-c215-54b8-a64c-2723194b21fb",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d71187b1-4ad6-5ec2-bac1-6c4e395808e6",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a395c7e1-365e-5139-924c-e7bb3371194c",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b0ef7d9-35a1-5c54-a611-df51d1bdca1d",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49f37eec-e92a-5313-a1ce-cf315533b08c",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d50a81b-65e2-5669-94a3-cc5e852844ab",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:502abdb7-d8ce-5c14-897d-9f9c97e379a3",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e066e14f-d644-59fe-989e-b4eada4e0551",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79edb30d-50fe-5c18-b8a6-9dbe2ce16505",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:187bb212-ef73-54df-bbb4-802b68fe7239",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb7b9223-f32e-5f0b-a9b7-2449c5e28794",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c359cb82-e3d1-5e91-9bb8-4c133e2d7279",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d936b8e9-0745-50dd-a966-d13a06d296e2",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.12-tuxcare.4"
    }
  ]
}