{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:25afa6c8-83fa-5a34-81d5-9791246567a5",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7",
      "version": "6.1.7-tuxcare.7",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:bcdd7fe5-bb2f-5eb4-a308-df1f16c14fbc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:a46dca87-1040-5080-91d1-f24a70faef2f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:4b87c4bc-fb27-5756-bdc0-d721bc1cee00",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:164a3dea-c417-52e7-851c-b3b018766d4f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:e9ebf46b-7969-5709-88e7-98d964f92f31",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:afdac6d1-cb1f-5329-8663-7aa07b55a314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:f1fc02cc-ad93-5350-8b70-3b974bd16e71",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:c8bd5f78-d58e-534b-89c2-76436a2bd56e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:9a482ac5-5a17-58e0-ad35-e1b8bf830cf0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:3ed96d1d-f616-53cf-81a3-8ff9f743356f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:f7da999d-9f89-53d2-a6a5-c25aecf9fa3a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:d00e2620-fcd1-52bd-b011-f4216600bf12",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:8cc48240-01b4-580d-acd1-ea32312d2a2b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:af3b9acd-6fc8-55cd-a198-e516c3ca8395",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:be894bb5-abdd-5a08-9996-96cf45248581",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:282a9db1-91cb-533c-870e-7988840e5234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:f111776a-8d60-5d4c-917e-98a4a6b6f87b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:25df36ba-6c13-5c61-bc98-9b2549093d2b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:d31b18b5-e0fe-5b67-92d3-29beb250e2ba",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:9a41411a-f8df-593e-970d-72d660b95f67",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:a71b4f7b-5953-5ee0-84b5-e6069ee9e234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:ae50ae52-f0b0-5519-958c-6a929af1dc38",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:6fae4b5e-cf2c-504b-b11b-5238cff12542",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:fb1df792-9a37-5322-9d1b-702eaadca0e2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:d3ba2afc-ca3d-52ba-96cf-1f1447e42c72",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:96362aed-d411-5882-b3f9-92f7d9f2ec0b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:e9ad0280-350a-525b-97ff-eec781f3c9d2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:b52ecdc9-add1-53d7-8ecc-0baa68b979f7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:c7c4b300-0fa0-5048-a12e-490dbed94c63",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:9c4ac586-6c60-55ce-b363-b4685f338005",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:32a0bcb4-2ccf-5d7e-a413-89ddb3887164",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:792b0fd8-4e8e-5510-865c-abee14858cd5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:4fd49622-3462-5a3d-8f47-d4caecae920b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:e0d4467a-ce33-59d4-a6bc-c9f920a79324",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:5ff5e055-8bf6-538f-9cae-516ba3458eb0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:c7647030-61e2-5cfd-b2ea-ba8cc8de4b72",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:047a60e4-9e47-5b89-a77e-17a213ec5d16",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:c1ecb265-bde5-5d53-b5b1-255cb824fb83",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:113374e4-27a2-5896-8191-192b449f0113",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:a9ef0e18-e729-54bd-bded-29bd2adf2234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:6114932a-cf89-5653-b711-4e2ed41f09b9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:bd71484e-5df6-5009-834b-743e4eba38f3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:e74f53ad-be11-59e3-8b1a-2a9c5447a5ad",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:f6040d0c-24c2-542e-b21d-0e54d279a018",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.1.7-tuxcare.7 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.7"
    }
  ]
}