{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3a0465ed-9959-55f2-99a0-091f4a2b7544",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-web",
      "version": "5.3.25-tuxcare.3",
      "purl": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:cedf6c1b-94a2-55e9-8112-3dd18f0cb073",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68816467-0049-5fb2-b678-b398fd5121ab",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1310905b-ad8f-5165-bb01-9d4dfb1bf987",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:710c2ce3-8f43-5f36-8547-fd95a1000696",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:411859de-4277-5846-98d2-b558dca4913c",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d796089e-5364-5593-88d3-25524c46b2d8",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:374321ce-d080-5f03-b7c6-12be13ae33f2",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d760f963-f79f-5cd2-a132-a6692c9cf2d1",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb5a62e0-0350-5571-a139-154c4ffdc1c2",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:edfe66b4-9e88-58b3-bc06-9518865f5b59",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3cf9245-af8a-55db-ade6-9076587d67c2",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38819 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0696cd07-1d8f-5c8e-ab29-f7bb55696ba0",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d6ffc3a-0543-5d28-889e-da6bb90b0657",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de3de8e9-6816-5395-8111-7c5e2117453b",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c608fa48-85be-55b4-adbc-ed831635b18b",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a14ac738-fd3c-5b54-9863-a6900f829add",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ca60c73-a2ee-5c32-bec4-b82eaae5b526",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79c728d1-209e-593a-9b22-3c560fb65fa6",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3bf3444-cafc-578a-bbe8-89eae3a06333",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:639ade25-2528-5e3a-9508-5bdb68a91ea3",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:465c14bb-9f37-551e-980f-816efd7f96a3",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22741 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:874c11c8-8380-5319-9935-918335d386fc",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22745 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce16b931-06bb-5ee3-b32e-2a60b9518dfa",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4b1a752-7769-5905-a6b7-ece41d7f1f47",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb04cab3-b21b-5f8f-9227-99e878d3d40a",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42226207-f074-59b0-b54c-b39f9db06291",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5383e1b3-5265-51cd-ae99-65da8a16fe03",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d422feb3-c932-5dff-8cb5-1a1a98fe0e29",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ced236dd-2ffd-5405-a1fb-60b619b4b698",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95528ec5-f6d8-5b62-aa65-cc53f8905e01",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e776fcd-2e5d-575e-9c32-17a297e154e5",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbd29a87-05ef-51a7-a57d-68d4d0e8eb72",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41847 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:241e83a8-08c0-575d-ab1f-6d8d10e5d82d",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbb7f32b-8417-5f28-bfcd-d8943f370fc6",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42c6b58f-c8c8-509c-b54b-37f2c610f1d6",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7917f94-a160-55f5-ad36-a0ce1a9aa402",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f01238dc-f1e5-50c5-93b2-380068a1a75d",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68159174-681f-5a83-8553-dee755d94e15",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab613136-10cd-5a6d-b0c4-29324f44e9db",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 5.3.25-tuxcare.3 of org.springframework:spring-web."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-web@5.3.25-tuxcare.3"
    }
  ]
}