{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0724ff91-b3f8-5b0d-b060-810a4565ffdd",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-webflux",
      "purl": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1",
      "version": "6.0.14-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8ecfd4a9-f370-5565-92e0-963b87fa3117",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22243 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e08c4746-1923-5566-b0e2-b404683df620",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6729176c-ab92-5ce9-9f46-189d1fd053b6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e0157370-ca1b-57d3-a43d-24076c2b14df",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38809 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6ae39d33-843d-5f2f-a829-41cba96528ae",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b1dce7b6-8b97-5a0a-a363-b28901d3ed07",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9923fda3-33c0-5a1b-8282-995ad93a1f64",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:679e4c1e-d21f-5a90-89da-d3f288c313c9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b20cf4e3-149d-51c8-9658-e6e6ba10f931",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9d3c6dbc-0793-5a7d-87df-daf7f69c4dc7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f49f288e-7df3-5cb0-8b87-8c98e70e994d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cc7fe19f-b52a-56c9-8e54-ef9f3f266b54",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9f8dde49-c0f4-5239-a6c2-06e309f7abc9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d375006b-f9ea-51d2-8efb-16192d6396b8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6949eec2-d64c-5bf5-9fa4-36e70e223dee",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b4b211aa-9d97-5172-a429-8b65c4185dc8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:89b43f84-eb2e-5cf2-88bd-1eb8f5674998",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b2380139-c3ab-5b74-86f4-7ed92a743734",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a3867895-98f5-548d-ba75-cc5a98c385fb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0e62fad0-07eb-5ea2-a005-543ce24289e6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:75b59674-d581-5c85-950b-5ce5889cf988",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d0165ba7-435a-56fd-a378-df64c503d9bc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cbbdbcae-046f-51b2-ac51-8e40e7c060a2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:78dc6652-66e4-5b06-b101-07e401715460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:11ad8e7a-3d5e-5d79-b449-d5606de8d274",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2a127055-5124-55e0-8d48-33701ef08db2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:51b13d1d-7ebb-52e1-9e0d-a6b140aedccb",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e4440172-5abf-5248-87dd-28479112e8c5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c61c6dd9-af8f-541c-8cc5-db42a564f47a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:17121698-4836-53dd-bf83-1c195bc0d6b7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3fa287c3-7db9-52e5-b36c-6c1e19082b34",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7f10ddb2-e995-54be-b924-2595c807b923",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:975727e4-7e53-5b14-8643-4c94b380f365",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bbee961c-1353-5823-abab-4ab58853f942",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:66b0149a-749a-5f36-bab5-4f0e282388fe",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8c5a17e2-fa97-5396-b9b4-162c067d1b17",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:499c7205-0781-5ab0-92d5-20a9b2011b8b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4b24ab2b-f94f-5a2c-b16a-4077f6fa0149",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:601817cf-3d62-5a64-80d4-789c364a33a1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4b61fe8b-f1d0-5cf3-8ce5-a3d0e6ad446d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c2b43219-e43f-506d-b618-a82f1e21be8f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:81ede12a-5252-5704-9022-312643ebaea3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3acce04f-887a-540c-a6d2-51bc5e786c05",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6fddda17-98a9-5169-9928-7cae28f4a25c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:840dc02a-3060-5f28-a385-8cfc95746468",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9099b80f-fb3e-5ff8-b097-e612c773ddd3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webflux."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webflux@6.0.14-tuxcare.1"
    }
  ]
}