{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ea473610-34a5-557b-8fca-a92864b44f01",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-webmvc",
      "purl": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1",
      "version": "6.2.3-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a7538a0a-2645-5ad4-b2e2-2271b423f552",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0230ac21-7f4f-509a-b7b9-ba2ebeaaff8b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41234 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a1b8ca35-baf6-5d80-842e-e6eec4c2859c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:348d6e6d-a1ee-51ce-9179-59cccb5b66c2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8f022e5e-6916-501d-b840-815a00254f0a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bd7ca310-b892-5bca-ade8-6249958381b1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2fa7a02f-1aa6-5428-a012-926af06491fd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:98cf2029-db1b-5200-b626-d43da26a6a3b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:29cc800e-38f2-5f06-b68d-05b3933d99bb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0993b926-b545-5454-ab72-d64deb1bad3b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:62b0039f-ab70-55c0-8336-c99eb2460574",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cb461641-ef8e-5de4-982a-247ef316b13d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e59925df-5a0c-565c-b103-b708ce87104e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6e08bdbe-6400-5b1a-b773-aa87117128ba",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b2338ef2-39b1-52a0-9f87-334b62c94167",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8539bc03-c8f3-5a42-9541-8ee6b013aead",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:45977d63-696e-5e00-9b59-cfc2b397d8df",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6aa16901-84e6-55a3-9ec0-2f086c6c8652",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:42b6b9a3-7121-5e3d-82f3-6ea2737c3456",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:098988f8-d0c1-5cad-aa1f-1d8b6a29b9aa",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f3374dfe-406f-516d-bbea-9d77155f8821",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fc04cf06-1f3f-5210-ac00-088a1bd6b879",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:91755467-d059-57ab-9501-5645a677483d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c8ec7179-73cd-54f2-b1af-0a1c402aea2b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:88751fad-c139-54a0-92ac-1982f416b6ab",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7c9f231b-e7b1-5829-b69f-d46c35a88565",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47883",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5dd3aa00-be77-5d58-b2d5-e9856e7e395b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47883 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8704a2fb-e655-5add-93fe-7a3e14b4d539",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ab38816d-5f37-5c48-b1cd-1098a548aeb3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:102fb605-ecbf-52b2-a655-71d0295c220f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ce3cec46-2d40-5614-9588-e91aa81e038c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1d0c1702-c941-5e6d-9f92-d9ee088dd14f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47889",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dea0c879-b6fb-5fff-a739-de41c75539f1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47889 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47890",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d242f190-c7b4-5966-a0d8-a48b574be287",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47890 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2a511957-4a77-5b2a-8ade-75e3724127d3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5f00e320-496a-5524-9476-f2b1ff6bf0c6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5bf56fcc-dfca-5eac-a1ab-13fdc39b1965",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7b895640-598a-5851-960f-959bea848d8d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:98931fd4-9449-5cf1-a953-e33fd789b2f8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:05d74d08-31ee-5915-9500-05c2ee8185ec",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ed11c45b-fe1f-51b2-97f3-2570d1c8f1c6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:11650ea2-6294-5e9f-bad6-7458410ed850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9e2290cb-d9de-53a6-96a8-356287996964",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-webmvc."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@6.2.3-tuxcare.1"
    }
  ]
}