{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:63569282-5eae-5f76-8bde-ac6bd9477cee",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "5.3.25-tuxcare.3",
      "purl": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:a2c30c2c-f6c3-5eeb-beb4-ac463a9ca676",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d51cb021-a76a-51cc-b5e4-be5617f92c9e",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e16b546-6283-5016-90e6-fb8112be9fa0",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6759c09d-94ea-5f3c-b846-65e0489ff0e9",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5abf8285-3b26-5556-8eb4-91d73bbd796c",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ae58d45-6742-53e7-ab90-54a9eca37280",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f851c40-294e-54d2-8f30-3fa9e829819d",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:153e80c2-11ff-599a-907f-954772e0491e",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aa7c962-327c-5126-90d8-2689416cc682",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bd798cb-3fd1-5819-8d19-06e92d3d2bc5",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25161508-2646-53e1-a5b3-adfb9736c967",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38819 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23205067-53c9-5fdc-afff-3901be1fc099",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f763aa0-34b0-5ef8-ba19-2121dbe4bbd9",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02c10e74-4105-56ac-8fe7-4b8652dff51f",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdcc32fb-27df-5cb6-a2be-399f4edef599",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:310cf46b-ced0-5700-bdae-898752b1b024",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39b67336-e1be-512a-aba1-249f1081efb5",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ff2cfee-b040-580f-a625-e7bd8015bac8",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:069c2525-3961-52a4-9385-f7f5c1f19e5b",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a655c245-bebb-574f-9366-44322535da76",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c583e7c-fe47-58bd-81b5-2003afd0136d",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22741 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa608eeb-7f6a-53e8-b8ce-05b5a9dfe913",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22745 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0f9ea4d-f1c5-5c60-8a3e-404ea3e9ee86",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d91ecdfe-9ad7-5682-82a9-887457537ed3",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5a14f0b-3735-5410-9ec8-c9d10a329f1a",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:edfe3a31-efff-5688-8f93-314ce6852b4b",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fd26d97-65c4-541d-a3a6-3251552df2d4",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2166bc82-0735-537e-a25c-52cf54edd834",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01c51746-9f94-56d0-9aa2-ddbb2e7d30da",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8da7d92c-d807-5582-b51d-59769884365f",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fc1e027-571e-5c1d-b378-90531c74f7b7",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:131be208-7c54-5b2c-a83f-ac90d4cff5b9",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41847 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af8bcfa8-76d4-5525-b3d6-81008a0adbe5",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d2a22d5-458a-59e4-9291-2167f2931afb",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52d637d2-d1fc-53cf-b576-9e2b64d4fffd",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:203cf57e-8333-5f1b-b00d-0a8d565d43ed",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa8db345-72c2-504c-b488-8e3a443f58a4",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d42815b0-51d9-5444-83f7-19e0a5e66900",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20898ff3-3b45-5935-86bd-74c10648c70c",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 5.3.25-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.25-tuxcare.3"
    }
  ]
}