{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:e08da2fd-e1d3-53a1-b7a0-a5cf45dfc879",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "6.1.7-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:c7cd12ff-b7bf-564f-8646-8fd0aebdeca2",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99e8135d-1a15-5cf0-a942-71a44a0ebeac",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97c5da38-e6e8-5e48-a535-ac056c6dde89",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38819 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b48c6046-d3b7-5e33-8081-b91ca9be3802",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2c5c83f-5720-5f49-8121-f0b8ab262fad",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fc96d0f-69b5-5848-94ad-48311c297a00",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41234 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be855896-c36a-5d5a-a11d-b204d4cb82b3",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db14144a-647a-5aa1-8e46-c651080fc8c4",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b10f7b6c-5fdb-585c-9592-65c09a2137e4",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59afc0e5-5735-53d7-97c9-dcfbe8b28a8e",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16f85747-17da-5df1-8d0e-f5257a918d30",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a190494-9d99-5966-bb85-af94aa9684d9",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd9d6bc5-f81c-50b7-9288-96dd40366af4",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d888f0e7-5710-59c3-8dcf-555f6b6d3295",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d4d8d6f-661f-5cfa-ab18-a7de014d0f8c",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3478cc8-8a87-5e8c-9321-d66512991ee7",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb217d42-8b2c-5a7c-bc63-5dd839c78ff1",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4fc4a9a0-c4ea-591b-a06f-9e85c2130b98",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1184c53f-27f2-5eb2-a24b-5dc7003308fa",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c36e93f9-25d0-54ea-9418-6cf3080823e6",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9825f29c-0359-5eb3-b48c-e36b32aa1a88",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e5faacf-b731-5956-a75a-887b29e4548d",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce5d44ac-5a4f-5467-9da7-8ea627098ebe",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:137cc288-5ea1-52e0-8d7e-58edd095f632",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:679d0c3f-d35c-51f7-af6e-4fd76f04cfa7",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5756056c-1ddd-508d-a424-482b3767c70a",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5b548cb-b099-5b03-a098-a78f0828d11b",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3e11d54-d43b-579b-87f5-6000a5f606f0",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c3f0bef-5e01-56a6-886a-26ea7fbeb46a",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.1.7-tuxcare.2 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.1.7-tuxcare.2"
    }
  ]
}