{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d9901895-0142-5a0f-b1ab-861064cb3baf",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-beans",
      "version": "5.3.24-tuxcare.5",
      "purl": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f7c05e10-44da-563f-858c-a1e6e407a374",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a2cfad8-805c-5c7b-92df-98de05f0fdff",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e2d30d1-80e0-5fee-8fac-b1a53ce99f7c",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fd70dec-35ce-5721-a858-2adf37c4549c",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eaccec5e-5945-5f88-9896-3e220b4ab976",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e63e849-0524-5a17-9daa-10c39521b11b",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2e02803-c8be-5d50-80ed-1388984733df",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd767b20-d742-5383-818c-2089d9a2a2ff",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d98e113e-3ad9-5884-9479-b2503f841b6e",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6963a796-2c69-5b31-9331-2cdd2a74ff32",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3aa9d13b-643b-5df6-8fd1-23bcecf5d9fe",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f41beae0-1b6b-5be9-a43e-790137d0ad48",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e28641ed-c16b-530a-ada7-60c4272ce8ea",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24e7416e-57bb-51f5-9db3-0a0c6d10fc65",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:848a8448-fb20-5a72-b94f-1fbc06733996",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2503366c-4e4f-5f6f-81ea-9279193ab75c",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c81a720-8582-5fe9-bcc9-c95c28ee216d",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ead678d7-3de3-57d9-86f4-c3202d6e3758",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23857c12-6915-5b47-bae0-7d3dbd8375e6",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7e41135-a516-577a-8c16-7076a0c8c4c3",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc419795-f538-5808-a720-beb94caa4bd1",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3782022e-2f63-5ea5-8cb8-44c15b2c97ec",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f0333b6-5783-55b1-a68f-22d4471c44da",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e304e5d2-b92a-5caf-9468-6984a85502f0",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:849f644c-561b-5bd6-b18b-af422174cb58",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.24-tuxcare.5 of org.springframework:spring-beans. Patches already applied: 7052da453285658215efc1dd5ecb0d472fde2de1 (already in target via 2c11852775 'Backport CVE-2026-22740 to 5.3.24')"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67164717-0346-523f-a0ae-3e6b50fe3068",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba200f78-0f73-573d-ae37-005decb1d258",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d95ad0b4-4d74-54e7-b032-ec687bc35055",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cf1bd8a-222f-5c0d-b511-d90bdc3a9cfe",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ceecf10-8c3c-5527-b4d4-6d9470d1f5d7",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:693ba081-b9dc-5f51-a251-648e74f656f8",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e862bf0-30a4-5b6b-9a9a-fd64f09fc211",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cee580b7-9a6b-57d9-be32-3c8ca7aa37eb",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e835aa5-edd8-5985-9a58-b0e7b9e451e2",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62db893b-2f41-524d-9021-543ea61442f8",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b101d93a-1ffc-5302-8339-63a3e7403d02",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:275f9fcf-3c10-5ee3-8efc-4bb3f6fa45ca",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff3d800b-0934-5887-b18f-f150f65be0e3",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85cb2b3a-8bd0-5b8e-abca-3f899ad742f6",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d2f621b-701d-51af-b51d-85a95fc67ee1",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 5.3.24-tuxcare.5 of org.springframework:spring-beans."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-beans@5.3.24-tuxcare.5"
    }
  ]
}