{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:26be014f-0032-521d-a103-4cff8faab0d7",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "5.3.24-tuxcare.8",
      "purl": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:e3e439da-1cf2-5905-b95a-5154881b84ea",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f19a6d5-d08f-5ad6-840e-7fa3a68fe4ba",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a3d63f1-5f91-5ec8-a87c-0269ccb8c09c",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aabb87c7-dcd4-5e1f-bba4-0d3bc0b3460b",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf01ace8-d852-54ba-bc7b-276f80aedd91",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30599b96-b0f0-53e6-994b-2848afb2d867",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d36cdb5-760f-53fd-a492-df1175dbca33",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aece5ef7-4786-5945-bacf-09e3e7a31c46",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3dfd8ad7-f5c4-5786-a85b-ab61e497443e",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4857c72-8ee2-5b2f-9258-afc93dc633ba",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c2319fa-ea5e-5347-91a5-f3147ab88cb6",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27d68a38-6c78-530c-8b6d-224ba0bbead8",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0f254a2-59b1-5780-9c0a-698a20bbc77a",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67675a97-ba66-51ec-ad60-923d33f88c84",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4123743-32c0-5651-9967-9ca7b09e2de2",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f81b4efa-f5ad-54a4-bb89-09f90542d459",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef034f8f-db34-5b31-b989-0d29d857b0ab",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f33f213-4fa7-5cac-a303-5e36eaf6b665",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a645ffa4-e597-5ef4-a1ca-3cd0f04fe6e9",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb31fd79-1dc2-598c-a584-a3ef2dcba54b",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aca7822-dce7-5c1d-b714-1f70d845c580",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6c20277-52c5-57a1-a379-dd4ecfbd6dc7",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5901656-7d27-57f5-9945-63d9470ea648",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f29226e-97fb-5e31-82d9-2a3546708871",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1aa3961-b56a-5c4a-a2a6-31a2644fdba4",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.24-tuxcare.8 of org.springframework:spring-websocket. Patches already applied: 7052da453285658215efc1dd5ecb0d472fde2de1 (already in target via 2c11852775 'Backport CVE-2026-22740 to 5.3.24')"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bc5144f-7eea-5bf3-87af-9bc9356760f6",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ba86c73-06d5-5040-827c-0da2aed06509",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce176457-ad56-5e22-a76c-3cf751c1d8fb",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ddf55e35-05da-54ae-9a6e-7c6b003cd8c1",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11f22f10-30c2-5014-a6ba-2db8fd337159",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb4a21b6-62b4-5313-8346-2ab4192a0ed4",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcafdf60-149d-554a-8429-e6c794e85bc6",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09290d84-5abd-59e2-9c4d-5d268518cd8b",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34ebadd3-b37c-5eec-81df-c87664de81bb",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88c6701d-dace-5ff8-a1e7-07320eaa78d1",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74325ceb-eb63-52ef-9e54-976a7e922fad",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b99c169-b0dd-5836-ac84-693f12f16b1c",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a124452-3e23-5db3-aa46-6aab9108f1ab",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1ef0791-9a4b-5c5b-8172-b1cf03d996f9",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8925bbde-4578-5465-a306-a0b2b339eeb2",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bc46bed-42bb-5ae4-b7f3-a0d4b20c3f23",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03490b81-6211-51b2-85cc-8ac80322a3f6",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd118e5f-9fb8-5fd7-9880-99e354986bcb",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7b2d5a4-2dd8-5eed-bbe7-3b1d5a669d63",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe37c680-41a7-5a10-8d0c-da67fa715d33",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41b372eb-6122-5a70-8fb4-661191df24fd",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:debdfdbf-7776-52b5-a13b-32292a521424",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bf8cd66-8dd2-5fca-a98d-fe20c03f8fa6",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:435f3845-514d-58cf-a6de-3f73d01203b6",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:558ae0a7-5067-5ddf-895a-cffe6fd6d59a",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5e52374-42f9-56b5-a9a7-e9060602763e",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:438ee907-eac0-5ace-9fd8-88c454da400b",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d67ace57-0cf6-50ef-839b-a46f9b386017",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.24-tuxcare.8 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@5.3.24-tuxcare.8"
    }
  ]
}