{
  "@id": "urn:uuid:3fd9f47a-3b7b-41cb-86ed-13be5e51583e",
  "role": "Document Creator",
  "author": "https://tuxcare.com",
  "version": 3,
  "@context": "https://openvex.dev/ns/v0.2.0",
  "timestamp": "2026-10-02T19:53:16.344109+00:00",
  "statements": [
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2016-1000027 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2016-1000027"
      },
      "action_statement": "Vulnerability CVE-2016-1000027 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2020-5421 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2020-5421"
      },
      "action_statement": "Vulnerability CVE-2020-5421 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2021-22096 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2021-22096"
      },
      "action_statement": "Vulnerability CVE-2021-22096 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2021-22118 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2021-22118"
      },
      "action_statement": "Vulnerability CVE-2021-22118 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2022-22950 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2022-22950"
      },
      "action_statement": "Vulnerability CVE-2022-22950 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2022-22965 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2022-22965"
      },
      "action_statement": "Vulnerability CVE-2022-22965 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2022-22968 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2022-22968"
      },
      "action_statement": "Vulnerability CVE-2022-22968 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2022-22970 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2022-22970"
      },
      "action_statement": "Vulnerability CVE-2022-22970 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:52:29.383613+00:00",
      "status_notes": "Vulnerability CVE-2022-22971 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2022-22971"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:52:29.383613+00:00",
      "status_notes": "Vulnerability CVE-2023-20861 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2023-20861"
      }
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2023-20863 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2023-20863"
      },
      "action_statement": "Vulnerability CVE-2023-20863 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2024-22243 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2024-22243"
      },
      "action_statement": "Vulnerability CVE-2024-22243 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2024-22259 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2024-22259"
      },
      "action_statement": "Vulnerability CVE-2024-22259 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2024-22262 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2024-22262"
      },
      "action_statement": "Vulnerability CVE-2024-22262 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2024-38808 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2024-38808"
      },
      "action_statement": "Vulnerability CVE-2024-38808 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2024-38809 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2024-38809"
      },
      "action_statement": "Vulnerability CVE-2024-38809 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2024-38816 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2024-38816"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:52:29.383613+00:00",
      "status_notes": "Vulnerability CVE-2024-38819 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2024-38819"
      }
    },
    {
      "status": "not_affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2024-38820 does not affect version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects. not_affected \u2014 Target version 5.0.19.RELEASE does not contain the vulnerable code pattern from CVE-2024-38820. The vulnerability requires the presence of CVE-2022-22968 fix (which added case-insensitive field matching via toLowerCase()), but this version never received that fix. The target uses case-sensitive matching for disallowedFields without any toLowerCase() calls, so the locale-dependent toLowerCase() ...",
      "justification": "vulnerable_code_not_present",
      "vulnerability": {
        "name": "CVE-2024-38820"
      },
      "impact_statement": "not_affected \u2014 Target version 5.0.19.RELEASE does not contain the vulnerable code pattern from CVE-2024-38820. The vulnerability requires the presence of CVE-2022-22968 fix (which added case-insensitive field matching via toLowerCase()), but this version never received that fix. The target uses case-sensitive matching for disallowedFields without any toLowerCase() calls, so the locale-dependent toLowerCase() ..."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2025-22233 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2025-22233"
      },
      "action_statement": "Vulnerability CVE-2025-22233 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2025-41242 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2025-41242"
      }
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2025-41249 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2025-41249"
      },
      "action_statement": "Vulnerability CVE-2025-41249 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:52:29.383613+00:00",
      "status_notes": "Vulnerability CVE-2025-41254 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2025-41254"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-22735 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-22735"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-22737 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-22737"
      }
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-22740 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-22740"
      },
      "action_statement": "Vulnerability CVE-2026-22740 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-22741 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-22741"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:52:29.383613+00:00",
      "status_notes": "Vulnerability CVE-2026-22745 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-22745"
      }
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41838 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41838"
      },
      "action_statement": "Vulnerability CVE-2026-41838 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:52:29.383613+00:00",
      "status_notes": "Vulnerability CVE-2026-41839 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41839"
      }
    },
    {
      "status": "not_affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41840 does not affect version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects. not_affected \u2014 Version 5.0.19.RELEASE uses the Synchronoss NIO Multipart library for reactive multipart processing, not the vulnerable PartGenerator/MultipartParser implementation. CVE-2026-41840 is specific to Spring's custom multipart parser (PartGenerator/MultipartParser) introduced in version 5.3.0 (June 2020). In the vulnerable implementation, BodyToken objects containing DataBuffers accumulate in Reacto...",
      "justification": "vulnerable_code_not_present",
      "vulnerability": {
        "name": "CVE-2026-41840"
      },
      "impact_statement": "not_affected \u2014 Version 5.0.19.RELEASE uses the Synchronoss NIO Multipart library for reactive multipart processing, not the vulnerable PartGenerator/MultipartParser implementation. CVE-2026-41840 is specific to Spring's custom multipart parser (PartGenerator/MultipartParser) introduced in version 5.3.0 (June 2020). In the vulnerable implementation, BodyToken objects containing DataBuffers accumulate in Reacto..."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41841 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41841"
      },
      "action_statement": "Vulnerability CVE-2026-41841 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41842 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41842"
      },
      "action_statement": "Vulnerability CVE-2026-41842 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41843 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41843"
      },
      "action_statement": "Vulnerability CVE-2026-41843 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-41844 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41844"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-41845 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41845"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:52:29.383613+00:00",
      "status_notes": "Vulnerability CVE-2026-41846 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41846"
      }
    },
    {
      "status": "not_affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41847 does not affect version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects. not_affected \u2014 Spring Framework 5.0.19.RELEASE is not affected by CVE-2026-41847. The vulnerable Kotlin Router DSL filter function does not exist in this version. The filter function was introduced in commit 1dfe304da4 (September 17, 2019) and first appeared in Spring 5.2.0.RELEASE (September 30, 2019). Spring 5.0.19 predates this feature entirely. Without the filter function, there is no code path where modi...",
      "justification": "vulnerable_code_not_present",
      "vulnerability": {
        "name": "CVE-2026-41847"
      },
      "impact_statement": "not_affected \u2014 Spring Framework 5.0.19.RELEASE is not affected by CVE-2026-41847. The vulnerable Kotlin Router DSL filter function does not exist in this version. The filter function was introduced in commit 1dfe304da4 (September 17, 2019) and first appeared in Spring 5.2.0.RELEASE (September 30, 2019). Spring 5.0.19 predates this feature entirely. Without the filter function, there is no code path where modi..."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41848 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41848"
      },
      "action_statement": "Vulnerability CVE-2026-41848 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41849 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41849"
      },
      "action_statement": "Vulnerability CVE-2026-41849 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41850 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41850"
      },
      "action_statement": "Vulnerability CVE-2026-41850 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41851 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41851"
      },
      "action_statement": "Vulnerability CVE-2026-41851 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-41852 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41852"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-41853 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41853"
      }
    },
    {
      "status": "affected",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:49:00.206678+00:00",
      "status_notes": "Vulnerability CVE-2026-41854 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41854"
      },
      "action_statement": "Vulnerability CVE-2026-41854 affects version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects."
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-41855 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-41855"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-47884 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-47884"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-47886 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-47886"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-47887 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-47887"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-47891 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-47891"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-47893 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-47893"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-59280 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-59280"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-59281 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-59281"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-59282 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-59282"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-59283 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-59283"
      }
    },
    {
      "status": "fixed",
      "products": [
        {
          "@id": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1",
          "identifiers": {
            "purl": "pkg:maven/org.springframework/spring-aspects@5.0.19.RELEASE-tuxcare.1"
          }
        }
      ],
      "timestamp": "2026-10-02T19:53:16.344109+00:00",
      "status_notes": "Vulnerability CVE-2026-59314 is fixed in version 5.0.19.RELEASE-tuxcare.1 of org.springframework:spring-aspects.",
      "vulnerability": {
        "name": "CVE-2026-59314"
      }
    }
  ]
}
