{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:cfefe998-30f1-559e-980d-94a6903d6ea7",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-beans",
      "purl": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1",
      "version": "5.3.20-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2016-1000027",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:59136e80-2995-5755-a233-bad709d5ce31",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans and will not be fixed. It is not a patchable flaw but an inherent risk of Java serialization. It is recommended not exposing HTTP Invoker endpoints to untrusted clients; if such exposure is absent, no further action is required",
        "response": [
          "will_not_fix"
        ]
      }
    },
    {
      "id": "CVE-2023-20860",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c03c4d8e-f8cb-55e7-ad83-5094a7b64e81",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2023-20861",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:27f88519-e2da-5c0b-b476-a5d3413738ff",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2023-20863",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b4257550-7619-5285-8ab9-5695090c5ab4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-20863 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2f32d9fd-15a7-5d53-a459-122078707c30",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e33a84dc-8dab-538f-bc0c-b94568ac300a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c7378e1c-467f-59dd-bebc-f62d168ecc58",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38808",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9bb4afd4-d34d-5c4d-9184-4d79ba3f9e38",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2879130f-6e9d-5ad8-a1c6-72cc4c857d36",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f9e23da0-e9c8-5f75-a73f-c1b135858868",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fd3464ad-db52-5512-ab8f-83423f3f0a33",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bb285f84-176c-58f8-9bd5-3a6c928b993e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2024-38828",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:84f3371a-6db6-5841-a650-c29d83c3f4db",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f6e70fbb-a3b4-5c5f-b02d-722e15002075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8cc6107d-794b-5f7f-ac24-6218c56cca14",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d616468e-cd7d-59a4-9b0f-9f55bb1d65fb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:19908317-074c-58d7-8f49-5a37e2f02fd7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a39248f5-809e-5296-b8f4-6b5bf8605fc5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4f6d8d46-7996-5f76-b954-d84d67df8978",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:734791b1-5a6c-5a3e-b26f-bf83fc031e8f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:09aa7efa-c0e5-5664-921f-10922e1e562f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:376a6033-a655-515b-a77e-296ab1f96018",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1f26d63e-9bdb-5a02-b614-5f3867a12c0b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a37a203c-9fe0-582f-a1e8-c3d7bc0d1fc7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:486d10a0-ff84-5f9d-8fd2-0e44342bcd0f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d3991fb1-7e95-5d0b-9b4a-38a84b193a07",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:51d04170-8f21-56ff-a2f0-7774732fdcb7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c0bb4eb6-8efc-561f-aba3-dcd64b6d3547",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dd7d8d25-0af8-54da-b8e9-bb9e07971cae",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6f2b91b3-a00e-597d-b550-4c5162b99add",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8bbe5cf1-3954-5a1a-9b4f-8ac7a5762c15",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41847",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:90846501-9ca4-5132-a688-3b80b60a2f5e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41847 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:85ee39a1-dd4f-5645-bdff-be9d9ecd1c6d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41849",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:436b9e87-bdbf-5917-9c2f-a00c93363cf2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e196e7d6-fd3d-531d-a2be-c02855c3727f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:baa87621-fa29-5585-b0a7-792645c07517",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:aa49edfe-a647-52a1-9c5d-76d19f27c944",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f5fd5346-8234-5dc6-8069-21585053c1d3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:523f12d3-0df3-5073-8af6-d001814ba5d3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9b0f614b-a00a-5bef-9c7c-51ce8b1bedd7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7f46146a-5875-5c11-90f4-b4a219ce59a4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1003b72f-d9cb-5a61-b9a0-b986b1fe28cd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:87fb10f2-6ff3-5862-8939-a5bb5e55e816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b57a6834-503c-5ee9-ac7d-324b490e36d2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3a2ff2fe-590f-5001-9fc5-06cdb54bc25e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:65893aa6-c80f-55b8-b689-64bba2cd7345",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:27aec7d5-1744-5ad2-8d7e-c60cd871dc89",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:644dba98-fdb1-54bb-93cf-62adacb61a92",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9b77cc14-8ec7-56b6-b850-3df9377c945a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5a83f7c8-ca74-5abf-8d06-4fc9a668a3cc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:99758f9c-504d-5c45-844b-64548ea1d985",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:05d5e1a4-3a16-5a27-be8a-4a087e581c7d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:23439c2e-f144-5e5f-b143-129aaa6a6df0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 5.3.20-tuxcare.1 of org.springframework:spring-beans."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-beans@5.3.20-tuxcare.1"
    }
  ]
}