{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0c33ad9f-9aba-524f-bd53-154b06321494",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3",
      "version": "6.1.13-tuxcare.3",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:7fbda3d2-9bee-5c47-97cc-5097900ddd6e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:5d1be2c4-03a7-59e2-97a1-3b622bb5e6ba",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:b57b7b86-f77a-576d-ba32-000a408a7d11",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:5fc466c1-3b69-5456-8a10-f1cfbdce5d33",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:df24cf2e-b0a3-515e-90ac-da61a1e25e7b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:ff36c5b3-7dc4-5b26-8905-b9210fa39a39",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:26b5b49b-3b94-5976-9733-d3957e765f0d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:c719778f-e40f-54ab-a9c0-28fc7b01ddc0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:6f62ac3b-cdab-5fcf-be98-40efad514d79",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:886202ff-9581-50f2-8e8a-0977cc94b546",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:4959ef14-575f-57f5-852e-f819b00ddc41",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:6ec41338-3ef1-5b9a-80f9-2bc421dab194",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:790422d2-cc20-539e-965f-22ef837b0b6e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:5094a14d-5d0c-55cf-8599-8a4b95e6911e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:54ee22bb-0b9c-5c72-9f94-f5376186e32d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:61fa9f2d-cfe4-5088-b495-9f7d353a7124",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:14fa8d93-d36e-59cc-b81d-f42ea2af96e9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:4e23b930-200e-54a0-96a4-625682b0ad72",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:b7bc8e27-9fc6-5db8-b0e5-d710568f54cb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:d0ad9575-2bb1-57ab-85a7-93ee4603a10e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:ab545adc-42db-5f7d-b75a-49080f0ce0d8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:a2dee919-4559-5f08-b0d4-139c5e969f9b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:ff97bfee-92db-5f23-b1af-9d55a5bbcd84",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:2494acf7-7043-51f6-bac4-6e8db9491a10",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:48005798-16a5-54af-9016-cb7d7e60094f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:84044ee7-e71c-5739-8ae9-c9392c410a05",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:756b879a-ec8a-5d63-a17c-d6307196434f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:81bf5b17-13c3-5812-b55f-a485e0b74a02",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:b7e55346-2a34-5ad1-86ff-5ec7e5af3983",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:08067058-1b92-57b8-9934-720628111d3d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:6f738b5d-d0cc-58ea-a765-e4f1c5498cdc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:7e498f5d-2402-5235-bac2-c1182b2f2b97",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:70d140cb-6d0b-5f65-890a-e1cb4a7674df",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:af0da785-c23f-5a8c-b397-09c4bc1fe533",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:7446c4e7-658b-5826-94cc-9f0352262ddb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:fa7279b5-1744-50fb-ac3a-f8460b5c4a2a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:acbd3719-8dd6-5f76-9d19-d4fcaaa9c647",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:c924d59b-5833-55bc-b652-0fa22676256b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:a95a1c53-af3b-55c2-9945-789020211e6e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:9334bd83-4177-58f5-b370-b67bc8f94a65",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:adf777db-cb7f-5335-b763-06e0daa73dcd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:e0558103-dd4f-5d94-b480-d5f7320f38f5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.1.13-tuxcare.3 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.1.13-tuxcare.3"
    }
  ]
}