{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d16e05d6-c1a4-5d3e-b3fd-2f57c30c53fb",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-beans",
      "purl": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1",
      "version": "5.3.19-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2016-1000027",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4f7d3b59-5c82-53da-9735-27ca017a2b89",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans and will not be fixed. It is not a patchable flaw but an inherent risk of Java serialization. It is recommended not exposing HTTP Invoker endpoints to untrusted clients; if such exposure is absent, no further action is required",
        "response": [
          "will_not_fix"
        ]
      }
    },
    {
      "id": "CVE-2022-22970",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e2eddeb6-7228-5da3-9ea0-34b589391790",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22970 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2022-22971",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8ba0df7a-a093-5b37-b78f-4be500c4d7a0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-22971 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2023-20860",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1f569bbf-2100-5fc9-a507-6c7f03909395",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-20860 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2023-20861",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9d74c619-e2fb-5f0d-8a83-615b7e173f51",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2023-20863",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f0f680e5-ccf8-55cd-9890-90d044053692",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-20863 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3edd5453-d44b-51fc-9431-accda9963d1e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:05fb850f-f7bd-59e8-95fe-376b67793dd8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:973d7eb9-2eda-58a1-b571-0d9513d1c139",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38808",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dbca2b9b-3b79-5ac0-aedf-1d8bee28a92a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2571c34c-b601-54a4-a545-3b521ce9cc3d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dfeafc68-d229-5780-95f3-1ebf6223e70e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fd31eec9-ad17-54b5-91d2-a48f48f2169a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:36f027be-ae60-5f5e-aea7-97283b089618",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38828",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1c19bebd-cdd7-5854-9631-11b54e665bf1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38828 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3c9747bd-f1df-5988-b3da-a9efa9bc11fe",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6265ebbc-be0d-55be-a42c-0e783e546c6b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a921e6b2-3e15-52ae-a356-13d2c9c8571d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a390b88b-d0e5-5148-818c-941a625866e4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e0960ab4-655e-5a9a-954c-6f698e275ef3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3fa0c68c-60aa-508e-a1d5-8dfcb3d816b5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:247e12c9-95be-5e8e-a20c-c1035e250521",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4a67d7ce-e53b-5429-90ef-a8deb5af9cfa",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5252755a-9a93-57b9-b871-47d32a44a7fb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:10376ba1-ab9e-557e-a63f-60d7965a6d9e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:42983d13-6504-559b-8025-845775e57e1d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:41ce7a92-731d-5a90-8faf-871418ab04dc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:69350947-7262-5369-9d24-203cdcaa34ac",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:aee9f0b6-6a0e-5e3f-ba22-89f5b2890ae5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3b9d866f-9c8f-539e-8317-4514b84b8a0a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:da84bddd-7a06-512d-b40d-3be742aff1ca",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cc6e993c-78dc-5579-8a95-ce57c8fc94b5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e5087c6a-6656-50af-be84-fb2debdc4ba6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41847",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f7ecae92-3b9b-543a-abc4-298a89cfce52",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41847 does not affect version 5.3.19-tuxcare.1 of org.springframework:spring-beans. not_affected \u2014 Spring Framework 5.3.19 is not affected by CVE-2026-41847. The vulnerability (filter parameter shadowing in Kotlin Router DSL) was fixed upstream in April 2021 by contributor shindong.lee@riiid.co (commit 07ba95739b). This fix was included in Spring 5.3.19 when it was released in April 2022, over a year after the fix. TuxCare onboarded the already-fixed upstream version in September 2026. Both ...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f0001496-55d8-5787-b470-0b03b1ac579d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41849",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:05213af0-a019-54a3-a043-e93d3ef7006d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bb5fdc22-7b03-580b-a491-6ac88673fa0d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:91a47edb-b935-5e66-b3fe-55ba20f57ca7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3e58d792-b453-575a-bf5e-c5125d8224e3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:38b4563c-0587-5fd1-9b53-493cf956724f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1e0c9fd6-d105-55e3-a3b0-4051f6a516d5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e030c7a5-aebc-5aea-91b0-1771c198de41",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e8ed25e9-2b63-55ec-94c5-09d244e2412b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9a3eea89-144f-575c-8195-5c0b1c6fd2b2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:508ef585-8151-5669-879a-ab54abf27df3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1eaf6355-731f-52d5-83a8-ea30be131538",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9dfc6b16-22d9-5fe4-983b-5ae268958f2f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5d52aea7-2b73-54f4-af70-7ebb8cb872f1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4ffa286a-da4a-57dc-911a-283108cdda75",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2f98764a-61d8-546b-b5e2-478a06c98011",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:45bd3be7-9edf-5296-a783-07676ad839f9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0eb25f14-fbb6-5636-b925-e54126289d98",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0763e166-ae9c-5ead-b700-22381684b7bd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:75221269-442c-5b21-b801-63dda01789b2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a37ae500-8889-51b8-8eb8-1f10da49e348",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 5.3.19-tuxcare.1 of org.springframework:spring-beans."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-beans@5.3.19-tuxcare.1"
    }
  ]
}