{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d31a273c-f457-52b0-bb7c-6459ad5fce40",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10",
      "version": "6.0.23-tuxcare.10",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:801adf90-1386-5daf-9284-120462a0de4b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:3e743c2b-6b38-5dc3-bb88-d5c0557f40ef",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:5dcf805f-6e83-5a11-8030-59304d54c8c0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:ef827a08-8bae-58cf-a690-3c9e57b2e54a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:6658509c-bcdb-5ad6-a629-9f2474cb0f46",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:05ac86ea-b2ad-5fbe-942f-fc66f8f01991",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:b1b1f673-07aa-5dde-b936-45e60f596363",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:ab720917-d083-5623-aeae-1f5c39501361",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:2721eef6-19f2-5f13-8240-b733b1a61c06",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:954ef57e-6be8-5b34-8f3a-55f566359334",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:81b32c06-6fa4-5b23-9f98-d092c165532f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:8d7853c0-8a5c-58aa-9d85-35520278deec",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:45caaf5c-97bd-5161-924e-270fdea18447",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:ad44fca6-db0b-5119-923c-60a70fec3ab4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:31d7f398-fab5-5754-abd8-0e49ed9bc277",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:8d2e4df3-1c3c-51db-8e01-3467f30c0dae",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:5b51089e-e478-5d88-abcf-eab74505c4a5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:572d9a3f-532e-5832-85f8-c623333907d4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:ce338e88-9a1d-5ce5-b25e-1086518f0e17",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:2555ef18-0dbc-56cc-81f5-dbc250c10e3d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:a5b619ce-b909-56b1-a940-63df57187e9e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:7f73eb9b-2b3a-54da-9856-735582b4c78c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:c1daa2e2-76e0-56f6-846f-ea2817ae94ff",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:ee9c48ce-e66e-5f2c-af2b-5afc95a82297",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:33056b77-cd38-5a6e-aec4-4a6fbce9594f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:54a16e7f-8dc2-59c4-8c34-0e41ceeedf26",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:53bb05c0-7682-589d-834a-37783f7dcb21",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:d45a726c-e096-5399-ba34-09679ad3cd82",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:f1e0660e-c791-5240-905e-8f81632557f1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:3b563aaa-a375-5f42-94a0-ddcdb8698971",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:f16d4fc4-92fb-539e-90a9-0102fdeef538",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:b26dc201-7531-5b4e-9802-c82e45fba3ad",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:9cb7d9fb-85e9-5cf8-9ced-12bcaf34f012",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:8ea89637-db65-5435-bf53-b61252dd99b4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:91f82b1f-c2d7-5474-9ae5-8272aca734d7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:a62fa00e-9691-53b2-90d1-15e090e1fd58",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:cb9e4818-6f7e-5042-9277-362a35863e53",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:595e91d7-29dd-584e-a734-fbb06da9ffd2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:f5cee7a7-e3b7-50e3-b207-b1885ff5b900",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:8bf8e5ce-aff4-5ec3-a7be-8b447cd98ad9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:19373f3d-921b-5bd3-86bf-00dfd1f45c8f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:1d671a8b-cbee-5859-bc20-ec808c9d585e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.23-tuxcare.10 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.10"
    }
  ]
}