{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:40753285-b38f-53bf-bd79-dfed33950e7c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8",
      "type": "library",
      "group": "org.springframework.boot",
      "name": "spring-boot-starter-data-rest",
      "version": "2.4.6-tuxcare.8",
      "purl": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f2a0ac64-aae8-5ac4-bf6b-a81f4cff71ed",
      "id": "CVE-2022-22965",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-22965 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:065f2dcb-6246-5dbf-bc93-5a3908448f0a",
      "id": "CVE-2023-20873",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20873 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2606efef-9de4-5445-8fd5-804e7631d188",
      "id": "CVE-2023-20883",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20883 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b3a5863-f9ab-51dd-9bd6-3d3447771c7a",
      "id": "CVE-2023-34055",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34055 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36febe78-0dca-5933-9cc1-5f9b7c118177",
      "id": "CVE-2023-38286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-38286 affects version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2988c8a-bd6b-561e-b361-2266dd3e7ca0",
      "id": "CVE-2024-38807",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38807 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce0b03db-eb41-5d24-b71f-d5c84bc0a29d",
      "id": "CVE-2025-22235",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22235 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:725e5759-d09c-5092-b921-aa773e53b036",
      "id": "CVE-2026-22733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22733 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ed25394-4dfa-522b-995b-b7ba4a3d3ccd",
      "id": "CVE-2026-40972",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40972 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf2c17da-3771-5520-a00d-e97112de00a5",
      "id": "CVE-2026-40973",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40973 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5306a368-8db4-5860-b17e-317921917755",
      "id": "CVE-2026-40974",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40974 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed263078-6da0-5be4-9b4d-c618fcd1db4d",
      "id": "CVE-2026-40975",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40975 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8c19328-d5fb-5bbc-9026-38138a0e3431",
      "id": "CVE-2026-40977",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40977 is fixed in version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d6015fd-b9a4-5fcc-9c80-2e38c5a0c7c2",
      "id": "CVE-2026-40992",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40992 affects version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bffbdef9-b495-5794-ad37-fcbb7697a9e0",
      "id": "CVE-2026-41001",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41001 affects version 2.4.6-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-rest."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-rest@2.4.6-tuxcare.8"
    }
  ]
}