{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:af6fec04-7386-5a7d-aa60-03fb5df6f5b7",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "6.0.0-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:20785273-3e9b-5ee6-b546-47d26a59484d",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:166caf1d-7165-58e1-be5c-3c144f2bd454",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:079c18a4-f1da-5d03-8c5a-78ecd236152b",
      "id": "CVE-2023-34053",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6c511b0-9c98-5d91-bff6-b7576d8726c2",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae96c7ba-5d3b-5e8f-89d5-cd5396c30583",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fb15659-b476-54b8-a0d6-546c8cb399df",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26e75031-9c15-56f0-ad18-30d461777a1a",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c376d80-8b05-5249-9466-cb1edf1a895a",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d15d4d74-4679-51d4-a733-1ce3b937a0ac",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdeee44a-ae78-5fbe-8639-c10f50602b51",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27177f74-d9e2-5100-99af-2657b2a40e5c",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4ad8505-e549-5eaf-bcde-c4bd6ea4a789",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e227d1d6-eab9-58a0-bc51-00ef5ee70fad",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f019563a-1f1b-538d-8e5b-ccaf8bacab5b",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0efa8e1c-6668-5034-80a1-fc35a78e7709",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99eb98cd-87e7-558b-8662-3b2429a50938",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb0cdbe9-f125-5c50-8eba-e22eb4cf6301",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0c6e4f8-ba9c-521a-9408-8ef8198ee534",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36162d58-a181-5e83-8841-29ba5e082e03",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5860675a-a96d-5a40-ae23-7219ab7f0c8a",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1cb7f5c-7d10-56e6-b310-673fdab206c1",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9679abdb-3fe1-540b-8cfd-ed882d46a801",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7b00ba9-06d2-5c1e-8496-d8930722f72d",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec08deca-d1aa-58e5-a4f9-d4d77542a4f9",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd09d3cb-289c-5b6a-ac69-4e362037f79d",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6a79eed-7318-5b1a-9af0-8e6370266c64",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3002649-155c-57f2-8d06-18883ad374d5",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08efb34d-867d-58a2-8164-5b91f704beb9",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a37a36b0-0b69-53e2-8fdb-8848757dcb20",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4809096a-6ba6-5909-98eb-35ebb750bb8d",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4213cf76-41b1-5448-9c01-b65917c088d6",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30683302-b63c-5219-acad-310a2e51308b",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a95a5f74-5ae1-583d-8238-990464f57893",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f10a228-8b5e-5143-9bd2-1a9041e06589",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37f1bcc7-108d-5e30-ae54-61ea5a142238",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d8b4095-9769-5685-913a-907b0d2a6f66",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4841c2f7-2a79-56f7-98d3-577f079e5c9f",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62d330d3-b442-5308-84c0-ffa730970cb2",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5d7c083-e8b5-5dfb-b5c8-9afb79ebe663",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aff1e46d-8e56-54ab-bec4-a167ac542b6a",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69bc5920-e90d-5909-be51-d8e8fa25a0c8",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e102cf59-9fb5-5b6a-8dfe-f15d9c7616cf",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb77ce67-57a9-5f63-827c-061042f5b6af",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28e33bd8-750e-50a9-8667-e2bbcaad5ef5",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b1fa25f-dbd6-53cb-a651-836f68fabc45",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0b73fb9-af21-5da0-ba8e-e3623b0e6f5e",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d735c569-1228-5bef-847e-97c64f0c13e0",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77cca850-d9b9-513d-950c-a7e40b58c69e",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.0-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.0.0-tuxcare.2"
    }
  ]
}