{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:b5d0c374-7362-5665-81e4-3f469b58e10e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3",
      "type": "library",
      "group": "org.springframework.security",
      "name": "spring-security-saml2-service-provider",
      "version": "5.7.12-tuxcare.3",
      "purl": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:23560349-52c4-579a-9ec0-fe7c2017e9ac",
      "id": "CVE-2007-1651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1651 affects version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:780c823e-a51e-553c-957e-74ce6d2e326c",
      "id": "CVE-2007-1652",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1652 affects version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8559dbc5-8a57-5bde-a110-135aa052e316",
      "id": "CVE-2023-34042",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34042 affects version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbe0e232-7299-5793-aa38-90f80113dd9e",
      "id": "CVE-2024-38821",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38821 is fixed in version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1eabc6cd-02d9-599b-b407-37a3c33c2b53",
      "id": "CVE-2024-38827",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38827 is fixed in version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b104dd9-17ac-5e04-9725-45d70b2901ad",
      "id": "CVE-2025-22228",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22228 is fixed in version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d26418c-9c4a-528d-a398-2474d94de5c5",
      "id": "CVE-2026-22732",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22732 is fixed in version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48386d05-49f1-5867-ac18-535e52973854",
      "id": "CVE-2026-22746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22746 affects version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90687571-8da5-56e5-ad3b-8554eeba702c",
      "id": "CVE-2026-22747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22747 affects version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a75d1496-0aca-595b-a1c0-d94fecfbb299",
      "id": "CVE-2026-22748",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22748 affects version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d56f5aa4-d8e7-54ee-b327-06c417dc04bf",
      "id": "CVE-2026-22753",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22753 affects version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54a5581f-e0f6-577a-90c0-719b9fc0278b",
      "id": "CVE-2026-22754",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22754 affects version 5.7.12-tuxcare.3 of org.springframework.security:spring-security-saml2-service-provider."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework.security/spring-security-saml2-service-provider@5.7.12-tuxcare.3"
    }
  ]
}