{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c103f213-d810-5b60-8557-35b8972f5c51",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "6.0.0-tuxcare.1",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:11f2c6fe-614f-5ffd-a10e-e01562fa954a",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47a9364e-077b-5b9d-bd7f-a3ee90ee69cd",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b38ec55a-f59c-58f2-99bd-0654f2a6d6fa",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34a9e955-134a-50f8-badb-f8a9d186ec4d",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3860d4e6-7fe5-58e7-ada0-0b7292018eab",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1421cc8-ec78-5352-a1a7-b5d9c63882f4",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f211659-60f5-5081-953e-6dc04cd083da",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e20ebb4-37ea-5759-8419-0bea493e67aa",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aaa3dc65-58ce-54af-bf43-0c160c012da6",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8ceb213-79da-565a-acf0-3605514c7fab",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0241e2d-e74a-5e0b-aef1-3bd3f59fad12",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de130ab1-1b47-5e1a-9d41-b9d69e701aed",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73f2aff7-eede-5e50-a80f-2026bb542d59",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45433e17-4a0a-57ff-80b4-9ecc579ca1e6",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a54968a-6850-5f21-ac9d-43c0ed182bd1",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d2109b7-84a4-5980-ae16-54a1c9c61fbc",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8461722f-9f42-59ab-a0b5-d6ab2d41d971",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b38f7404-d386-548e-860b-cc3a81ab61b7",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abdb741b-d92f-5709-a4b9-e1a9cb4a0af0",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62f5fb71-2e28-543f-9c0b-3b63592af964",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:982831cf-969a-558e-8968-936bb25b44f1",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fef265fb-f549-5aef-814b-49146de05290",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c08365fc-9449-5afa-81c0-6dcf458eb27e",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4cd23b3-6cc3-53fb-a1cf-3b3fa34e3ad9",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85c619cf-cd7b-508d-a051-03543271507f",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7ec6206-6886-55c3-80b1-b4f9785a1ee0",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffb2737a-5b06-5690-b876-c450d3755374",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f594384-0ad9-5b25-8e34-b3b555c1e10c",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f7a7048-7df3-589d-a6e3-32f7e5df8b16",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ecd20b4-e225-5a31-a270-64d4f5941014",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54928853-87a1-5b22-8b4b-041ef194b7e7",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5535cc0d-13a0-5e30-a9e9-e15cc8c1e296",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:891dbbf2-7265-5bc5-a56b-e46595241698",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bdc3330-2bde-51fe-8b11-be0af922fe39",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9595d9c-d068-5bdf-9bcf-5678f5d473ba",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:908b2574-f151-5236-8942-85b51aadc8c7",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7883d711-a312-55de-924a-15842f4171e9",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf87a2ef-8b35-5cf3-8012-c2ef662090b9",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f259f0d-f9fd-59d4-9453-404e51621c75",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:483e898e-84b6-5c5b-888f-087359b415ff",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73744c99-475c-530b-90cc-80267df2afb1",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64eec2a9-0b2f-5690-b76d-aa7133c5ca37",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5089a2f-d9b9-5ef2-82db-7a01d411cadf",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:907864b1-d2a6-5aac-acc9-978f0240538d",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1130624e-cd57-551d-a856-9a5a243c7930",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55354138-3cab-540f-9340-1d0a0490528d",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cafc9c3-98b6-569d-a955-5d9741cf4c81",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eec8e9ca-de14-5c4a-8817-33fbaf1a5787",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.0-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.1"
    }
  ]
}