{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:e0ceb004-0c15-5248-a454-f581cf5a0fba",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9",
      "version": "6.0.16-tuxcare.9",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:309310ef-c6a6-5d67-8c1b-384424e862c1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:315de5e5-f69d-5dcf-814d-77cddccacbc8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:49598395-5f9f-5388-9661-5c4767eaf906",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:398883d5-fd08-5f5b-8c36-07564cb72255",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:a7111756-c647-5071-94af-04f151b368ab",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:1f65a253-0309-5f3d-bb75-2f030c6c7e35",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:8f30a563-75b1-57be-8d01-9feb9c9b8513",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:d2e212ce-af53-55df-80ab-bf16e67c7265",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:589f5236-e893-5920-9e67-3539e21d0a89",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:c05a4e42-efc1-5b6d-a2cf-80164cb68949",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:9574069c-519a-5745-b958-435f674b0f93",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:017e52a6-50ff-578e-b5b6-8849cbe0a80a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:0de1076a-098c-59a9-9989-264d86f19dd3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:55c38597-67c0-5e55-bac0-44b15f53f808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:39e02831-483b-54da-aad0-3323ce5ed44a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:1a5d7c68-470d-5530-99a1-6dd6945f972e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:a3d26f6b-f500-5fbf-9299-4cfaa0fb550f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:1704beec-037f-5133-a7de-1f5eb4a61f5a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:bd936814-7015-5bbb-a501-2fc967696124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:530c8202-ad75-572e-b21c-d48de89f6f2e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:1b0cc90f-98d3-5845-9405-e8661fffc1ce",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:089b387f-ff1c-5171-a3ee-b4113704106c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:dc241229-2a30-5a3d-be5f-277f3b6835ba",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:bbc92f2a-3e79-545e-b880-ffe7e232220a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:98123018-7177-5479-aa21-dd20bea170f0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:97197181-b7e4-544f-bf88-24a7e93edea3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:0fc34d3c-f287-503c-b9b6-2be5dd7b0982",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:f6728c14-e0e3-5e74-ba11-11867bef7f05",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:63c0b4eb-f546-5c96-b0ec-0d552c3bc366",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:3aad0560-4975-5773-8e76-f4ccbc449c56",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:92928378-8324-510a-aaa9-a58307301038",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:fe04e8ca-473b-5fe0-a2ac-2891ef384ff6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:6305e5a0-07c5-53a1-ae18-168c6092d3fe",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:ba6cbd64-ce19-5035-abc4-cb0bc4738c59",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:09b954d1-55e4-521c-a337-514bb0ff2ca3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:f4e549ac-f8a7-5d42-8f97-aa0e33dfdd43",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:97e7b32b-7c5f-5940-9049-4eb4f958b112",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:04bd3f89-0663-5534-bd19-4fbd6c4d806d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:820c769b-35bb-5fce-b74a-6d1a3f60d0fc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:4a2d5fd3-5a78-5870-aa89-a6c9ff60464e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:c6914fc5-60d4-5f5d-97ee-9a560bb478ec",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:3428a2c0-7f82-5c3f-afa8-2faaf30dd276",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:e6a37f3e-05f0-529e-b17e-83e635684a5b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:f9b42c53-f237-537f-9cbb-8ae4f46bc4b5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:d2317df3-1fb8-51c8-8f7c-10fdb710cae7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:08347080-8583-543a-b626-f6cf0573552c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.16-tuxcare.9 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.9"
    }
  ]
}