{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:267bc19a-750c-53b7-b8e1-3184ba961465",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8",
      "type": "library",
      "group": "org.springframework.boot",
      "name": "spring-boot-antlib",
      "version": "2.4.6-tuxcare.8",
      "purl": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:6de5af92-cbcb-5919-bf31-1a0bf23d68ea",
      "id": "CVE-2022-22965",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-22965 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06c63aff-765a-5ed2-9cfa-fa0247d6246c",
      "id": "CVE-2023-20873",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20873 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8001ed6-8980-5f1e-8b7e-829b65947224",
      "id": "CVE-2023-20883",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20883 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5a0e8da-551a-5d72-93f9-7515c0851317",
      "id": "CVE-2023-34055",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34055 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3fe9a7f-dbf5-57f8-a9f5-c4026a4185eb",
      "id": "CVE-2023-38286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-38286 affects version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4bbe5385-8db6-5f9e-95ef-ff12a8633806",
      "id": "CVE-2024-38807",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38807 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bd4ef20-e7fc-5924-ac89-55a96fd379d7",
      "id": "CVE-2025-22235",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22235 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:78d47303-710c-557f-9f29-a7af7b1b3447",
      "id": "CVE-2026-22733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22733 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67c79197-0f05-56b1-ad4f-6734accc814a",
      "id": "CVE-2026-40972",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40972 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a5786cb-4aeb-5cb8-aa5c-599fc25cdb8b",
      "id": "CVE-2026-40973",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40973 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2b0c7a4-5826-5cf3-8254-fce9bd8915d3",
      "id": "CVE-2026-40974",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40974 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b927c50-41b4-5f39-a562-8f928dad2849",
      "id": "CVE-2026-40975",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40975 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbbea568-187a-5614-8dc9-1172018f6c9c",
      "id": "CVE-2026-40977",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40977 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c79976e8-3fbf-590e-8550-501ff1c2be2b",
      "id": "CVE-2026-40992",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40992 affects version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f95af8aa-7655-5fdb-a954-2c16d21ffb95",
      "id": "CVE-2026-41001",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41001 affects version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-antlib."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework.boot/spring-boot-antlib@2.4.6-tuxcare.8"
    }
  ]
}