{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7d45f90c-bc9a-519f-9bad-d7ad21d57deb",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-expression",
      "version": "5.3.25-tuxcare.3",
      "purl": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8fc64ca1-a593-5170-94ed-c6d2b0de35ac",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98d806f3-a0d8-574d-b0bd-a41e6fb72831",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e183bbb-1326-5fd2-a34a-04939ccaa2c9",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63d5d7d0-2e02-5344-9d9e-f2d47074ccdf",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5cb8f45-315b-5123-a20b-5b7f06b6aba9",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:830cab9c-6410-5032-90e3-ee65a2c5532f",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:852ba9c3-0b0e-59d1-a982-0125f41e4a9b",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06eae623-ebd2-5361-9488-87acb1c201a0",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47b747c0-0fac-5e8f-9baa-b6cc66336bfa",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d7d7022-24ab-5c74-b8d3-1fe94e91d13a",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb370c8a-7d4d-5064-aa11-00b3e765ab8b",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38819 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a24cad2c-e891-5608-a7e3-98f731a4e267",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3d6cd95-e677-5656-9886-950f14e4fd8e",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67dd546f-5612-5499-929b-50b412af0432",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:368a873a-f816-54c4-8cdc-140d59e43886",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b18d7f90-e8fe-508b-bed0-13215098cbad",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eaefa2d7-0856-5662-88d7-9aa2ffb320a7",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32a7c7a9-4cfb-53c3-a6dc-9c3363346509",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dceb9704-b1ec-50aa-b3f5-309b31d02743",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3836e4cf-62f9-512d-b2c9-f6bd6a79c731",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d10cbd0-da20-56f1-9d68-a55a05a65f76",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22741 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a81c250-9d96-5f45-916b-b9205edd5816",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22745 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6a479ef-1261-5d70-b56f-75434fd0f68f",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c2495c3-b206-569d-b4e8-9dec27b80b2e",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea0314d7-e6b8-5bf2-964f-546ac7c7861f",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a34be9e6-9c1c-5eca-9941-f233b105806c",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5485e4fe-8795-5e07-b667-81aea003d605",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b399b2c7-cc73-5c0b-850a-c281c2c04e3f",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1f0ced1-61b8-5a62-9c5d-01be36a2255a",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:988a5f58-46e6-58d2-b324-60c81ab838aa",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c46539c-51d5-507a-9aba-ec15a241e4d1",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab052377-97a0-5c10-aa71-3c44a20d42ca",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41847 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef6c129a-c76c-59e0-8258-305d0f1230b8",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98d0face-46b4-5ce6-8b10-77f4184a53c5",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f46f4e5-8a85-55a9-8349-8159d06d52e4",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6914e2a4-204e-5bb9-98be-86b05e620a89",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0601444-846a-5fcc-9be1-28f2ae93a8be",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da36b467-fe27-56f9-b576-5597fb0187cc",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee04ca01-5cd6-57c4-b49d-b27c5741bbec",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 5.3.25-tuxcare.3 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-expression@5.3.25-tuxcare.3"
    }
  ]
}