{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3821326c-c588-5004-9509-c956c0b355a7",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-webmvc",
      "purl": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1",
      "version": "6.0.14-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9e5e8e5f-1726-5782-97e1-fb65645249f0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22243 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b0b08068-c47e-55a3-9f77-efa9eb84f333",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b5ab8ebc-b5b6-53a5-b849-98afa655f42a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bbb5eca6-6761-56b3-9128-478584ae5a44",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38809 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9d02cad8-0eee-54f2-90bf-831727113bd9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2f8858be-103e-5cac-9127-c39eaa3a838b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6e91a82f-5cdb-5573-b4e9-441101d3fe9d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9db812f0-7f79-5566-8fd7-ad468e5758b7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8116a5a5-290d-5119-8634-95df866394f3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3d6f07cf-63c4-574a-90f2-65d79bb33a4a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2aa05f5f-faea-5713-8316-8b1fab90ae7b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cdc51945-cdb7-50ce-b619-a3d7a8432158",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8c1b4dd2-7772-58e6-a840-494108d37ea9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5d60b05d-c183-55c8-9e78-b3f8f28b48f3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c54a09e7-9608-5135-8e5c-70ae33ce914e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5cf5bb58-56f1-5e07-98c9-7bd815e0da0f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a57601bf-1a11-575c-a802-d3a382a8004c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f8a5190d-fe80-529f-b20e-bbe4414462ff",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bf9b80e4-a533-52fe-9edb-02fb2fce5086",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4508959e-331c-5616-acd7-3ca9f61aeda8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5afb7ec0-72ad-5306-ac95-d9fccdd903a9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2355fba9-dac1-520e-9ef2-f5b44a111a1b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b648be87-92c2-5069-808d-a960b1697d13",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a47de6e6-083f-5700-992f-77787aedc279",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bd3592cd-c8d0-56d1-b5ed-784611032be0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:543a7cf8-f8dd-50db-8a18-ac7249101a2a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a2023419-2513-58fb-a9da-e7d575af80cc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5338c351-aee8-528d-a4b0-e3bf4f2f03f1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c7912667-5a7d-579b-836d-e1086447c6f6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bea0b9a1-ab0e-58a0-8c1f-082d531d1325",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:47d3bf70-b5df-5e92-9834-e094e812d6f8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ead9759d-06b5-5179-b4ed-6b980788d1ca",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8bd19091-cd72-5e85-a87d-c81f282feeaf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8e2dc76a-5cc4-54ed-bff5-b0e4182b3496",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:03056cbf-bf7c-5287-92ae-995b3f69fa49",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5ecf0a7b-d2fd-5b83-9e02-b8ad1e27bf60",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ead0bb80-59d6-55fe-9653-b53594918dda",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:697e9c6a-3c6c-5c6e-99c5-3392beef12c4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2dd04933-adb8-57ec-b305-1422ac317ccd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8e0e96bc-efcb-559a-bb48-cebb6d628c33",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2abd8a52-9a9c-5f71-9747-fec60ff6ca1e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a1446c84-3137-594b-90e5-3f34d685be31",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c0b7a84f-8be9-5fa0-b64e-af115339f08e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fb46511c-ee76-50f2-8943-76dc3c73a972",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cefd4900-679a-50a9-9dca-5b9a2b387ef2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:25551bfc-a3b2-5053-8420-f6b8d23ac54f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-webmvc."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.14-tuxcare.1"
    }
  ]
}