{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7556453e-03d4-54fd-afae-08ab9d3fbafd",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-jcl",
      "version": "5.3.39-tuxcare.19",
      "purl": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:c3348799-7835-50bb-9907-bf11fab5ff3f",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71110856-2842-5b9d-9a47-d0a9aa4e70c4",
      "id": "CVE-2022-22968",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2022-22968 does not affect version 5.3.39-tuxcare.19 of org.springframework:spring-jcl. Spring version 5.3.39 is not affected to CVE-2022-22968 as fix has been already already backported by the original developers"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2418a6c0-1c52-5067-9b69-2ceb0e65eebf",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00c390a2-8cef-5fbb-a5f6-563d00732ca4",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:decca5e4-9915-5f83-8ee3-ba882905730b",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bbf8b84-0659-5028-8f80-5a7ed303d531",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02ebc6af-b3b5-5319-9201-eb7ed9206b68",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cfd8515-3605-58fd-ad7d-cad5440e4260",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-jcl 5.3.39-tuxcare.19."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdbf6632-0f6b-557e-a228-59fa24008545",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1143948-1753-5a84-abb4-b146d54607ac",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85f093dc-f5a0-5a6e-af10-e9a667a3daf2",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15a93d1d-7767-552e-b58f-104ac2cdb59b",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:931235b4-57f7-5f92-8b8a-f5e92c45bcda",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93df2ce3-e59b-5a59-8df5-0ebc4bf51fbc",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4568d8a-8267-51f2-b94a-56f819f6a29f",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3c50489-1a7d-57c1-a2a8-90c772a50aeb",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e209c89-af2e-5f52-a909-a72a3d9a328b",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b27f3dc1-fc4c-5a9e-94c3-b33e01868db4",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71e7743f-e21f-5598-bdf6-ac400b5e15bd",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41840 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30901da4-1009-5856-8a3a-a4424b4e0249",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9ccfb2a-dd6e-5e3f-abc2-22bfc6dd473c",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30352d8f-c553-59ae-aff7-7017677da739",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0523d063-5a0c-50e7-91f4-2e73cd5654c6",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5ba7339-1a34-586c-96ae-90fcfe01ae12",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af49e4e5-546e-57bd-b582-5f1548c4aff2",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2559726a-ee77-5c1c-9e05-6d4db24b93e6",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4f3d9e2-d503-5a48-a023-eafe91115727",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:095216f3-f64b-5ac6-8263-78e249808af0",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76fc20b0-f37f-5157-9e92-02e1350c7ece",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0ba8636-f8a1-5863-ae2a-c907ceffbcbc",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41851 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3993fa7d-af2b-5988-bf3a-65ae7d192978",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9748320f-a7c1-5327-91e8-c41138908677",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:563cea5c-b612-5c5b-abd2-d994282c1309",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c5ddbfd-70ff-573c-99a4-159a660938f3",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.39-tuxcare.19 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-jcl@5.3.39-tuxcare.19"
    }
  ]
}