{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d44f4019-a6a9-5db6-b8ed-0e82e0feb8a8",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-aop",
      "version": "6.1.21-tuxcare.8",
      "purl": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:959b7b9c-6b78-5489-ab6d-f28dd2f73f78",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-22233 does not affect version 6.1.21-tuxcare.8 of org.springframework:spring-aop. Version 6.1.21 is not affected by CVE-2025-22233: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: ee62701f5634e904e42e218baad142cea2bcd332\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e2923e2-7bb8-555b-9284-046471e3d2df",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41242 affects version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e300245-7fb2-5a3d-9970-1df51c247d86",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f7c428b-209f-5359-8a72-f045ad1927fb",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51d647a7-b564-5bfe-b414-ca42ef33f6f4",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e437cd66-8d9e-5255-bb5a-e9da23aa2d6e",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a64b058-cfdc-548c-a18e-61b2f5bb6529",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73f0fcea-de62-5aaa-94ad-5bcd08898725",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8868f41-96e5-58d2-b752-343337f5c5ae",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a07ea374-3bda-58a9-969a-d92a4b3b73d0",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0866193d-e414-5378-8c2a-984326ec8512",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a979788c-b340-59be-88e3-534dcd989efb",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ece43ed-d46c-5c26-825a-522ea2c81110",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e6397c8-3909-5686-ae6e-426d098c56b2",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea20f392-f6f1-5149-a3ca-b18aa395cae1",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7622e530-d6ac-5cf1-a863-58c35b6082b4",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d130410-9334-54fe-87d6-e98e9c297006",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d358a52-50a8-5ac6-bcbc-ea5d7e4a8989",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63142911-b735-5112-a569-f080e79c1234",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb471804-4933-5c1a-b229-9c681841c55b",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a473747-4357-5642-9430-09a8ae0b47cf",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1180d579-2c05-5324-bca0-e3eebe0e95b9",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ce2c1c8-563f-5bc9-9dcd-4cb9769cb03a",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45a814e1-687d-58ca-8f83-d8aa3f5b6f80",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f484eff-01f3-5c68-9da7-ce386f158851",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.21-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.8"
    }
  ]
}