{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:9ffbabe2-b365-5c48-93e2-6eebb878b1e2",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webflux",
      "version": "5.3.24-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:7e6b2481-7e14-5d9c-ac13-706acc0578ce",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:834b2a96-c243-54bc-bc27-c305b16fde5f",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7282eef8-ad5d-5eb0-8144-a976f46b65f9",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:160bf8be-e7b4-5e15-a2ca-e64391158a85",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-20863 affects version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9bcf656-faa5-5e56-9686-d85075193a21",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53facaeb-1c60-5933-bcc4-28aecb277c7d",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df0372cd-2991-58af-99dc-1d953757c9dc",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:074249d0-7273-54e0-a178-a96ecd81c242",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:473897a1-db32-572e-8fa4-78d915a23e40",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ced4f14-e27c-5c22-ad31-1e5460abb697",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:856e510f-73d0-5a68-ab46-9fadcc18ee65",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e84a96fa-fde1-5152-9b70-2f1656fda29a",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be488b0b-0469-5070-bd62-dc6f128a31a5",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c6af25a-d250-54a3-ab5f-82e4aa64c4c2",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5615193-5e9f-532b-ad1e-4d8c93b8461f",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8049c71-5a6d-5b08-a393-8862d11fdcd0",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2630a81-c848-51a4-8886-8253a558b77f",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a8328fb-cd62-5552-989b-35543a535dfb",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6606e770-ec07-5bd0-b269-8c1e33833a38",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5eedb206-6bb2-5698-b164-ec92ed004908",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:518108e8-0613-5223-916d-ccf2af8f5c49",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22741 affects version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3790fba-9596-58fa-965a-5e28ebd10741",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22745 affects version 5.3.24-tuxcare.2 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webflux@5.3.24-tuxcare.2"
    }
  ]
}