{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:db97681d-f7a8-59f4-842c-818e5f5397fc",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "6.0.16-tuxcare.3",
      "purl": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:1ee7332e-fd3a-5c4d-96aa-ca30e9caef38",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a55430ff-1c9c-591a-8418-cb68bde2dffe",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20e2cc0c-1a91-53d7-892e-c8b48263ead8",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa2912a5-062c-58bc-a253-fd3cfce651ba",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:715151d6-eb4f-5452-b1f5-c61deaa1c093",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06e7a74a-f0cd-560b-be71-5870c392b70c",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eec31bbf-533a-5e16-9a33-205df86838ed",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71215df7-d5ad-5504-8b58-1e82376e6393",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2dc6f7fb-d3c9-5d7a-8301-41b23be4d240",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c70dddcc-6077-5500-a0ff-df6057a120d8",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41242 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac6c63a5-d7f5-5494-a8cd-a3d0cfd3d73f",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3dc439c-089b-5542-994b-91c587b5ba6d",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64ab4ce4-04bc-5c5f-aa63-607247c1bf99",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de6ae83c-fde7-5db2-833e-e96b281981c6",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5047c9f0-dc8a-57a8-9b5c-6b43c28aa357",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bdd7607-bc4c-59db-8872-3f561b4504a4",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6272b8e-c518-59e1-806e-04e9e9cfcc6b",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf5fe8d0-ed2a-5119-b93b-e572fd2c1ab0",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfa75986-14aa-5c5e-a2a2-3e9b1a824b02",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1916c022-9f11-5488-9d09-90b8df1ba6c3",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9137d851-5afe-58ee-b5b0-df050dc98248",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c02e249-6fab-5e38-b9f9-ea1da63f38bc",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7c1fec3-ad97-530e-adc2-f0ddcb07818e",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80915a2b-9382-5e10-91ed-884a5dce5733",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9eabf90-c90f-5265-81b8-6b0bdbaae20c",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae60fb35-92b8-5ec8-a8d1-74ec565f9e65",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa47854f-1d5e-5c62-8b49-01217bab2413",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:061486ec-a947-532c-bf7d-9a7c5b3916a4",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21902f57-14da-5f24-945c-a7f77e671f38",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f89f4247-69f3-5712-8851-e4112dd86a51",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f2ad6e0-6aa2-5c94-acbc-0a079d6383c2",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:178c9cc1-0087-5a2f-a7f6-5ecab9021162",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.0.16-tuxcare.3 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.3"
    }
  ]
}