{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:8768b46a-7cf4-5b3e-abda-9586522a8f08",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "6.1.7-tuxcare.1",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:442afe3b-a23d-5407-aa52-7bdbd5b9df6b",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2d5ff3f-cb7a-5021-8904-9f6623f7ac61",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c29fa6a3-cd7d-5f2c-a11d-7aeb56cb1e6e",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38819 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5057409a-c36c-5412-a618-6f495b045d48",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5049372f-91fd-576c-bf17-172c7556212a",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9354d52-1dfd-587a-9f92-b947144fbeaa",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41234 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b0ab51a-095f-59c8-96a2-3767b5d42e55",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41242 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bafe9fd-becd-51a0-828f-11064ddae214",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a27389c-7746-51cd-ad4e-5dd3c422896d",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34ec69bb-50cc-569a-b6f8-67b3f3101dfe",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01e11118-f7d8-5304-9b42-5c5be5c372c1",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51f5233b-1c48-560d-8fb6-5a64147be4be",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4497efc-6c82-5009-a5df-d80b87e1b1f3",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22741 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee754fd3-5460-5ef8-9e37-714a983a2a0f",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22745 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e781450-84a2-5392-88f9-661c7785c345",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff2cc859-a6ab-58a0-a9f4-f6e4da29198b",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0410948e-cb01-52b5-ab6d-2514b5e86751",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fda01283-7168-5ed9-aae5-bb0c5172aa56",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:382af01d-ca16-5ce5-8fe7-1a061055d39a",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7f5fb21-e0d0-5d8b-9959-ec670aa8b3d0",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce2e6d7e-9b39-501d-8697-f441097e6369",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b109d64-2d90-5c55-bfcf-125b03c539e6",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d2580fb-0a2d-5c90-b0b1-2b6414975b9b",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2d9b1b7-3ec2-52b9-a29a-463959a893ae",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aa47176-4a95-56cb-8ad1-7dd9ad49775a",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:869f5f9f-8a46-522d-92e7-8b991221b3a2",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ecc1bc0-67e3-5632-9393-f32818c1aa37",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c63d69ea-3984-5332-80c7-5eb66b638382",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd53184e-d69a-5360-a7f7-e0d6c02301a3",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.1.7-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.1"
    }
  ]
}