{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d8fab343-683f-5fae-ac21-e410b0a05eea",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-aop",
      "version": "5.3.24-tuxcare.5",
      "purl": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:0a3f5c85-76d8-52d1-83cd-58c7644dbee1",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e814545-3ede-5dcc-b4b6-d30c4ec97ada",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d73a0cb-b4ff-5a00-b633-c9681d1fb920",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f9d58b1-e249-5576-8c8d-5cb7b4e2bbef",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8d85b9b-303e-5e95-a2e1-3ff560bbfb2f",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a244902-1e43-51df-b9ef-6615fb07b272",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:586143ab-9122-5e9f-becd-52245794d934",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf79e7c0-6717-5431-8bb0-215ef78d4f04",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33eb7327-d2b1-5dbf-b489-a9de3ef850d7",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efa79364-9e1c-52c9-b525-7466225958e5",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ddac3dc-f568-5614-ae83-598b602fea71",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09243443-ef78-5ac2-84a0-4607abd61065",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17e88715-bf05-5b37-bd79-3d45fb551142",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c61381aa-34e8-59ac-b51e-c33e2e3e5f49",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a5791e1-6976-5264-bcd9-5df83c7ce74b",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32a75d8f-e977-5f2c-8385-8494398757a8",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c2089c2-3f43-5c51-9d67-01c688cce12b",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd602e87-bbb2-5b32-b951-a9fb42ced990",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a1787da-f5c3-540c-bb8d-bcb3c5896f51",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d09f41d-5e8d-5262-ae27-3f4312213a21",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcb65def-95bb-58b7-a7d0-16340a752a2c",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dec03fa3-dce6-5582-b883-bfa27cc409f9",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ba09a3f-1b60-501c-bd7d-32bb7868cf5b",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:705ca11d-b5d2-5fd5-b032-f35789d04a51",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6aaeb0be-b123-548a-9b72-fe425af38bc0",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.24-tuxcare.5 of org.springframework:spring-aop. Patches already applied: 7052da453285658215efc1dd5ecb0d472fde2de1 (already in target via 2c11852775 'Backport CVE-2026-22740 to 5.3.24')"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d511973c-961a-5663-b1e4-f87d94a23f07",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:155bc1bd-9f10-5d10-b87b-74a6dc62e8f9",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43f8a44e-3f0f-54cb-8118-aa8cb3937645",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0f7a95f-0813-5bcd-8000-c30640daa6d5",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f38bcfa6-e9de-53e3-8297-fe1c1046532f",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efffac47-6c91-527d-9e00-ac84bf0fbc85",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70af5cfd-99fb-58fc-b15d-4993bb6bb416",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e4d9aa5-0eaa-58d9-be52-5ed9e6c9438e",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0272e350-950c-5da5-93ad-0c20f9464cbe",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a253ce85-e880-5232-b050-23204365bf87",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d5d355f-26f6-5f86-a20f-c997dcb225c4",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:682f6bb4-b7a0-572b-b67e-72a52494534f",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c74dbf4-1c06-5c60-8fb6-a6b7589a645b",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf5f2e04-2b1f-5f9f-8b04-382751daf62a",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:891a81e4-e719-5462-b976-b47d16999cb7",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 5.3.24-tuxcare.5 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.5"
    }
  ]
}