{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:86b5d387-f832-5c77-a2a2-84f705eaa182",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-webflux",
      "purl": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1",
      "version": "6.2.3-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e544960c-cc8e-5b61-9d57-9a37356f3a08",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1dbb3929-2635-58b6-a8cc-a213093b3ef9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41234 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ce068e68-b852-56a2-971a-c4e014fd64cb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e3fa986b-1c01-5931-bae8-3cc736ad979d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e2da02c0-cfc5-5baa-b876-6023525ea2bf",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:88f13e9d-d902-588e-9078-95203bfd97ed",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:89703f80-e0cc-51df-8757-65b80bf4d4fc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:717165d7-7fbc-5ae4-a00d-2974008217bb",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:45d1250e-1b4e-573c-93ad-2b93f855b72c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:465f5352-d31c-5812-9094-ec8e510e367e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c5f1a97c-9705-540e-a937-029ebb35857d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ec97d9f0-957c-53e9-946e-3e4c60fb3238",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9bb0d889-21ad-5f33-8fc8-1ccb2099351d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9022b6be-da99-5df2-a940-d46f10da3b03",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e6f4bf79-db45-55e8-bbaf-d4b16cb9f9fb",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:af4d0af3-3a92-5ae9-85f4-85a493e72155",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cb78f184-7885-5909-b651-59824ab30450",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:45b4e064-21d9-5903-b50c-e973c4e9b9b9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:065e40be-3bc0-5156-9e01-af80252a5257",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:96deca61-5f4e-5f80-8008-58e428cef42c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:40006956-f704-5080-8595-849911e22daf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d46179a8-69b2-5438-a0ca-0c5ed4d1e8b3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:19e64cc5-44a5-55a5-a4db-44777cd3823c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:18a759fa-ce63-57c0-b792-9f186f7c9a61",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9d5fbc58-a267-5dc2-acf5-86cc7ed208fd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:188c16e8-e73d-5d46-a54a-b60b034accdb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47883",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:55b0c3fa-bb24-52fd-83f7-d51670ce7e9d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47883 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:70a81e4f-f5dc-5cc4-8045-c64e123fbcc1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3385c68b-13b9-51db-9161-f9f8b2cdf0d4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:621c6f30-d447-5665-a5d5-5949cf247d15",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1e94b8c0-d744-547b-b4ff-a6e09ce45cc9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:aa1e2b44-807f-5667-a50d-0eaadb5f19cc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47889",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:84e41a4b-5eb8-5af3-a596-cb1fcda0678e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47889 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47890",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1ebbda8e-a490-5661-8b66-39a21b1cd3e5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47890 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7931ac84-5295-5bef-b90c-416387b7df7d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5eca91db-d7f3-53a3-bb14-acf54e22e39f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c2cdd7c6-767a-53db-b445-dc8c73c08ae8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:132745ff-2f1e-575b-9450-de17683126f2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6d09bca5-5606-5f75-be6f-e8287871ca4b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a32edc28-0203-5fa8-b04a-c3660c84733f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7e724b10-adee-5b2f-b702-8cb5b01cd40d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:88c980fb-b7d6-52fb-b45f-0e54846ea58c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:348a7ffe-eeaf-5108-9d4d-1e5f7c2f3a54",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webflux."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webflux@6.2.3-tuxcare.1"
    }
  ]
}