{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:fc850a9b-7800-5741-8f49-559bd3c94bf9",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-framework-bom",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1",
      "version": "6.0.14-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d606efe1-0abf-5c73-b975-542e1e6103ef",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22243 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c452af1f-5c58-52c9-8303-ca012e5f1be0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dc97472f-9c96-54a6-a248-fe0c65bb778d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:417e57f9-40b6-5f93-84aa-2a4930cbc3ce",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38809 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8039b9b5-f458-5e36-bc69-22dcd6a7a355",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7e450081-9fb9-532b-8a79-99b71cc7c7f1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bfb9a157-1a4d-54e4-a62f-bb3854b03366",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:76f20b46-1089-5c61-a769-c527efabb855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:089f98f8-b767-5106-b0a0-90da28202421",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ab87c47a-69b9-5e9b-8130-c97e59d95b82",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d14facd5-6524-5cf8-89c3-88a73e0ec676",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8854163f-fb6b-58d9-88a0-a9de2b9244f7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:04e30054-32a7-550f-a514-16aae155792a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:888c9bfb-89a4-522d-abd9-365f151fd0c2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5cd8f003-a96f-5bf1-be4e-4a511018e96f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fbf37672-39bd-5a6d-86b5-19b546e5e620",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:08433abf-c7c4-5a19-8565-4b0105fca269",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c4f1d2fa-887c-5230-a510-4a359a0a4eee",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:59b952db-c527-56d7-a3cf-dded7dc114e4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f9c1f0b7-8777-505f-9157-ae0ee355f8af",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f2c54055-c6b5-5b8f-bda4-7948bfd1a58c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4a1bbae9-0bce-5afe-86b8-c3233084e1dc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1172a4c9-e373-5ddf-b42c-0d962841eef2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b1d6acf1-170e-5b5b-abdb-febb102a8ee0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2dba4af0-cf04-50fe-a681-5c5891c2c08b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1301966a-95b1-5098-ae0a-78d1954e7002",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3d9ce65a-5027-5cfa-ac9b-8a8b75b45e34",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bb3d8bf4-3123-569a-a90c-30654d7bed9c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dcd48105-dec0-5da5-96c1-d6c94b0d9c64",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b5b38aad-63fd-52cf-9848-b96b2624ae99",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:76b4d63d-a546-5b56-b80a-3c13b340527d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ec313212-5886-5044-81f7-d206ffdc4feb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c89244b4-adc8-5a02-8a52-4e3ab44875ca",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9a94075f-84b1-5604-aaf4-24ad07a2123a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3f28bc80-bde5-518f-862f-fb518f8bc8cf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:070fd827-f93b-5ce2-af59-86357b176ea2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:12a2fb52-a610-5526-80b9-6bb18033e0a1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bb502e61-6a88-5b4b-9cb8-4c76a42da6b6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0aacb8e6-71b5-544a-9d62-e640319fd9d8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:83e85c6b-c2c7-58e7-af65-c1d7f687d72b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9c6d8194-0e64-5ea7-bdb2-545fe19a33a9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a5d0d648-8dd9-5c6e-8eeb-1242a1a977b3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ec37d809-8bc8-53d5-84eb-6517e916c1cb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3f00e97b-49c5-50db-a94f-8e27f5b09650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0b8206df-19ea-5025-9fe6-357058142a98",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ab1aadec-dcde-55b8-adad-f4a78f415e4e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-framework-bom."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@6.0.14-tuxcare.1"
    }
  ]
}