{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1bfee1a0-e21c-5919-bdfc-f66b56926c1f",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-jdbc",
      "purl": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1",
      "version": "5.3.13-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2016-1000027",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:92c14bf1-df31-50ba-9cc1-bb3237e8425f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc and will not be fixed. It is not a patchable flaw but an inherent risk of Java serialization. It is recommended not exposing HTTP Invoker endpoints to untrusted clients; if such exposure is absent, no further action is required",
        "response": [
          "will_not_fix"
        ]
      }
    },
    {
      "id": "CVE-2021-22060",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a00eb26a-d84a-5e63-b3e1-ab7f6f6f9c9d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-22060 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2022-22950",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bc2f465f-2d5a-586d-875d-25ff733e3bfc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22950 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2022-22965",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cda54a4c-8f82-5089-a750-58eb0745a6e9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22965 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2022-22968",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b1d62218-a7a3-54ad-9770-32e882803849",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22968 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2022-22970",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f97d973d-f8b1-5fdd-b332-2f57088aacb1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22970 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2022-22971",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2fb42bb8-0cb6-5c0b-856f-b8fc83ec8bf7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-22971 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2023-20860",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b373c519-6a86-599a-8902-486aacdd57e3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2023-20861",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1df1e339-4e96-5bd2-a7dc-b796ff8c0b29",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2023-20863",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:11dcd28b-1a69-5652-bf2f-0febbb9036f3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9268f67e-fa08-574a-abcf-6f08694b0110",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:38aafa82-59d9-5b3b-bbac-a702d0a41a78",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6b6f3458-9a2d-54b7-b490-f13d73c05620",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38808",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:10fcea8b-a791-56c9-9fd0-4aa547d9665f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:418d5147-ce9e-5b98-812b-abafa8f0a131",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:385087a1-4024-505f-a4a9-daa60d1c0435",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fa3289a8-e1c1-5536-9ea3-c0e7f9d1d350",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ae8437f1-29e9-5978-82e9-783eca5ed140",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2024-38820 does not affect version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc. not_affected \u2014 Version 5.3.13 is not affected by CVE-2024-38820. This CVE addresses a locale-dependent toLowerCase() bug in DataBinder's field matching, but version 5.3.13 does not contain the vulnerable code pattern. The CVE-2022-22968 fix (which introduced case-insensitive field matching using toLowerCase()) was never applied to this version, so the locale-dependency issue that CVE-2024-38820 fixes cannot e...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2024-38828",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ec3158e3-1a4b-56d7-9e41-c1a50cc5c7b4",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2024-38828 does not affect version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc. not_affected \u2014 Spring Framework 5.3.13 is NOT affected by CVE-2024-38828. The vulnerability was introduced by an optimization commit (gh-31834, 0970b1dc7a) on December 13, 2023, which post-dates version 5.3.13 (released November 11, 2021) by over 2 years. Version 5.3.13 properly allocates ContentCachingRequestWrapper's buffer using the contentCacheLimit parameter, never reading request.getContentLength() when...",
        "justification": "code_not_reachable"
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6f717fe5-17a6-5696-a7ae-dce32487d62d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8e808ea2-b3dc-5abe-898d-a54dd7ca2645",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5923c115-da0d-53c8-bb39-fe2953cbcb22",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dd148435-7076-509c-97f7-ad6a8f4332e4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b4efff17-36a9-5079-adf4-0ca42efb6e60",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3e4441f9-1366-59f8-ae49-764d3728da1c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ce4242d2-9b5f-573f-987f-d725f2b633ec",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:58318569-f79b-56f1-b81f-d0cc7c9aa691",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6330d696-38d0-589f-b9ef-b13c74429395",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5bccb478-dbf7-5c85-adc5-81a5c59340aa",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:143f2c63-4585-52fb-8155-7c21fd35d763",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:141bea38-6aca-5538-84bc-ca2448f9d67f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:11206cf4-9380-5dfa-82df-c84ae77ccdbd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ffad3f18-5f84-50d8-8129-ca447ab1a44e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:850652ed-aa2b-58a3-bfc2-a70a6818f320",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ba996793-918b-5277-88c3-6a24b9b5c171",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:18ad9068-560e-5262-afa1-63891b981763",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ed999a26-f713-5ec9-9fcf-ddffbe222ae2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41847",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1a8626b1-c8b3-529d-863b-b4c06fd88a62",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41847 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fe0c6db2-b218-521e-ab08-1139f935bfe5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41849",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2fb612d6-ed1b-56fd-82d0-dea48d3b6011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2d5fb26b-52b5-5c0d-a171-f68bf7eaf3b2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ff004874-cc09-5cb4-a1b2-706fad6b3b0f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:78d6bb5c-34cf-5cf4-aa00-1163a86cc329",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e336d09d-7d2f-53ee-90f5-84a947a42bc0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d0682808-3e14-5dce-bd7e-3081f6c72c08",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:90cdc140-4f23-5d1a-a4e4-55d5e3481d34",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:615057bd-0e40-5806-89a5-f0c8c5a1fa46",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dd34e1bd-00c8-5f83-8221-cb54b037e16c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:447f2735-584c-5e1d-9af0-93d3f33c2413",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:77ff2a1c-5502-5fc7-afaf-65a65debc615",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fed16d5e-86be-50cf-a3bc-4f7933da2c46",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7346565f-e2c1-5d23-b2a7-48d751d9ef36",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e12ea244-e7e7-52c3-bfc5-847bc464a375",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7e0e6d46-f081-557c-bbb6-379c6681e5f3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b3485c31-dd4d-5b42-a7e4-dc25034328bc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:41ab6d19-4721-5cc0-9442-ef8df9b62b17",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0551dc9a-25f7-5487-8572-489d69845a6a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2e3bc859-3517-5675-baa5-7cede843b947",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:63c20bee-bf7b-5802-96d9-c5231f52ab34",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 5.3.13-tuxcare.1 of org.springframework:spring-jdbc."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-jdbc@5.3.13-tuxcare.1"
    }
  ]
}