{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:406a3aa4-608b-56d6-a3ba-0b65c1a19648",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "6.1.15-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ebd74df1-33b2-51b6-bb87-021f6daf7abc",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b462aeb3-f465-5c2c-8a36-aed4632def97",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23e0c30e-a488-5218-a210-14f83d26278d",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:727b6860-5b89-571e-9056-be8081548eaa",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99d92dea-2cd6-5e24-8660-188e1ff5875e",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33cdb718-3317-5323-bf00-3138c297db51",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca50b944-b112-535d-8866-660144e0e0d0",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2955be25-26dc-5c6f-b4da-f3505f554698",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4971648-5ab4-5082-bd87-fa69c888d887",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:626c60b4-826c-543c-849f-e79f32f2ce2e",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9dc98432-b4c8-522d-a548-83bcd9033925",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fed3056-c6b0-5ba2-b77b-60dae2a2c804",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea2b326a-fb84-5462-a94e-c6d91557112d",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ab89c92-c49b-53a2-8093-035961458699",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2360c44-f4e7-5e2c-890a-d7826efe3a27",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2dd56bb-6159-51f8-90d2-b152f1755b97",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e92907f-60ab-5b58-a3a7-9d499952b5c0",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0b3ba03-df2c-546c-89fa-301dde41d001",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:215fcb28-383e-5fb3-848b-a3d7bf0aa810",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d910cd2-e316-5f54-96ab-6e8400d09224",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2966fe21-4c74-5cbe-9934-eed2eed14b27",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c080d5a-0e4a-5ade-ba88-fcf01ee5de78",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3aecebc7-cd41-5a08-985a-3a153cec1d4b",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a17733bf-d366-5811-9dfe-4ee86bcfa25d",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f3cf354-2307-5d75-9d9c-d7c83c2ae7a2",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.1.15-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.1.15-tuxcare.2"
    }
  ]
}