{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:97ed21e5-d0d8-5643-825a-f96bd1f697b3",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-aop",
      "version": "6.1.21-tuxcare.9",
      "purl": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d2e4de99-4f61-5b08-921c-75e8bb320d46",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-22233 does not affect version 6.1.21-tuxcare.9 of org.springframework:spring-aop. Version 6.1.21 is not affected by CVE-2025-22233: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: ee62701f5634e904e42e218baad142cea2bcd332\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6dc4f22f-77cc-5474-81c7-17109eb6ebea",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:086b0bd2-9c57-5649-a858-f14cf62a613e",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f6fa7e5-93db-57ef-9960-5b19062162ee",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a5a5c5d-b385-5d21-80f6-078253115246",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:848c98f9-6f51-5059-8708-e850a448e3df",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db366ea2-93fd-5a29-93c2-8dfcf96e9416",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb7ae358-4db8-5ed5-9fb4-ec10aa0707f3",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67fce7c7-ef7f-5782-bdda-a12d2417bd38",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2127da0-57c2-5873-b11e-4e895740f97f",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:263de9ae-1f07-5af4-8ee1-5b9a3a2ae66f",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:867c3038-6aa6-5dc8-a507-1743f881e15c",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:057aeee7-88bd-51fd-9ebe-1f667bb16d6e",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11891a4b-4798-5c94-9421-d254733dcd7a",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc34db99-c245-5d3b-91c4-0a35a76f61d4",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ee47346-05d5-5d4f-991e-5be41a88a0f2",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d602450e-0884-5c6e-a59e-8072dc2c4b20",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7505dfcd-b7c4-5552-b6b1-cf8312575171",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a8a5a8f-f1ba-5083-b69a-15ff612f0df2",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb0b4000-3a13-53b7-97c9-c78e65676f4d",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c28b88a8-029d-52c5-b52a-5f2aacda3281",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:569a020c-58fd-52c6-91e7-bec170b0ff45",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0723c646-c631-5868-bf87-afdb9b634a2d",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8a42424-ba02-5899-a8f4-07f6ee8b2eb7",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a5047c8-d920-533f-be9c-751cdb30566f",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.21-tuxcare.9 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@6.1.21-tuxcare.9"
    }
  ]
}