{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:826910eb-f9e8-5991-8627-544a8872da5e",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-framework-bom",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7",
      "version": "6.1.4-tuxcare.7",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:670e29bc-ce14-5ebd-92a4-e54df04dd287",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:0c0b6e79-6333-51d9-9101-dbfa46047dc1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:94ad8046-96df-5334-bba6-9fede2f84542",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:01568675-e4a0-51f9-80c9-e9f95876bfe6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:109ae127-7a78-5860-9a02-a99acd58dbd6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:9114f3d6-ac9a-51a6-b9d1-46403f8f53ba",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:4241cbb1-768c-548a-ab95-c16f55e587b3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:240b9e98-eee2-5621-946f-3dacffcc86c5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:d8f1842d-6bd8-5f7e-b7db-e21fd6c6ae25",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:b8f7d85d-feb6-5b46-93e3-20727570a536",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:8968e33d-56c1-524b-b976-00360c44147b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:5a5e80a1-499f-5fcb-8df7-1351cbbca1cc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:8a745d81-36dc-52a4-9bb1-36271a6e9ee1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:24df6730-d54a-57f5-8974-945f5444d5d6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:dfd57db2-db20-5cab-835e-e6cee9586a58",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:1de90368-5ed8-5487-bd2b-41921a6aa7a1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:12149858-a99c-5c36-8306-df52c54e7955",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:a0e24605-fbb2-5b0a-8b74-3424044db21a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:56680378-bd54-5e81-b0c3-9295790bf666",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:be111a24-6026-597b-9825-7c4e7acdc30b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:6af29e69-3b03-5833-a86e-ffdd0240826f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:5a237081-13b2-5957-8c65-53873375531c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:d6395723-3ecd-575c-a15e-4911ac9d7560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:9efe8a5b-0089-555f-abb9-92c59fec207f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:b2467bb4-ea38-5114-8c9d-163bd546410f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:6dbb55e0-49ec-5550-8d4f-ec05ee71a73c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:47ae4d75-a821-5155-94ae-ac56f6559915",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:e4bfc5e6-0d92-540a-a3a0-dd8f58ec5534",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:925ae6cd-d605-5945-a564-6079ff6d8138",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:aab04f40-8e4b-5865-89f4-f35f5c1561fe",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:e296877d-5efc-5bf2-9df0-d565123f7563",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:659bcc71-9d5b-5ee0-82f5-732c30bc9f99",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:a050982c-1abd-55dc-98a9-9bd11ecd8de5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:1726295f-6ade-5a40-8083-9301785683e7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:42c7d34e-d0b8-55c9-acd3-6e4e5c937367",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:8742ff41-57fe-59e0-82ec-b9c479a0154a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:9bb67d26-fee8-56c1-ba73-4cd2e10fe6a9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:cc3650a5-dc65-5921-b290-7c6dc355482a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:69d2d76a-f51f-5655-a628-2b72c3d530e9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:7bbed43f-0ffe-5181-acf8-a358cf71ce6a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:49c0fba8-ae87-59eb-8049-3bcc18d7488e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:af693ae3-13af-5391-9a94-fea335e3d21d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:efbd4928-17b9-5db9-a45b-4fe9d22401d7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:06f7265d-2b6f-5c18-a078-f146645f5bf1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:c52ea5fc-7df2-5a9c-b2d6-95a86b45548f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:8945d022-05ea-5f2f-8244-15b28ac9c417",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.1.4-tuxcare.7 of org.springframework:spring-framework-bom."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@6.1.4-tuxcare.7"
    }
  ]
}