{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:02b5bec7-7890-53c8-94ed-3e403d6faff9",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15",
      "type": "library",
      "group": "org.springframework.boot",
      "name": "spring-boot-starter-reactor-netty",
      "version": "2.6.15-tuxcare.15",
      "purl": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8fc18349-b2a8-5c61-967f-df12a539c8e3",
      "id": "CVE-2023-34055",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34055 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7086b7e8-54e3-5b1a-b6b6-4a390cc74752",
      "id": "CVE-2024-38807",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38807 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:969dfac2-b472-5aa9-98cc-6451eecf646f",
      "id": "CVE-2025-22235",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22235 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8da7dfa-a1b5-5203-a860-4f0c23ee8d35",
      "id": "CVE-2026-22733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22733 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afbf6d71-ed4c-538c-85ff-73191bcbe45b",
      "id": "CVE-2026-40972",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40972 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b5db5eb-7fa9-524f-819e-cbc9afdfb347",
      "id": "CVE-2026-40973",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40973 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d08c39e1-35b1-5435-9c21-ae74971b3e33",
      "id": "CVE-2026-40974",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40974 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d961d639-ae2f-5824-9906-a0279ede2735",
      "id": "CVE-2026-40975",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40975 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86b13b0e-4fa4-56c8-9e12-26e8ef65f962",
      "id": "CVE-2026-40977",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40977 is fixed in version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e279980-014b-503c-82eb-7d5c0f05de81",
      "id": "CVE-2026-40992",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40992 affects version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a79704f-9ca0-55f3-bfb1-4711ecea8130",
      "id": "CVE-2026-41001",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41001 affects version 2.6.15-tuxcare.15 of org.springframework.boot:spring-boot-starter-reactor-netty."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-reactor-netty@2.6.15-tuxcare.15"
    }
  ]
}