{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:8a9bcabe-6f87-55f0-abdb-95dfa3e8c68c",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2",
      "version": "6.1.14-tuxcare.2",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:166dfd8a-5dc4-58aa-9d2d-d481e2d75b6b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:2847d6d9-6a82-5d3a-a8d2-8e4ef356d091",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:fd2b7d98-6244-55cc-9ae9-4fbe296ca322",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:c27ef9bc-5dfb-53f1-9d08-984dd12adc0d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:2930059e-4701-5ade-9499-c8f1d89a0ad8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:702f8733-3646-5543-9fe5-57ffca655de5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:86481b30-d789-5cdf-ae1c-a4e317b00405",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:1228f0a5-5e88-5907-a5f1-1e6143874af2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:8e303e5d-dfa7-5d2f-b10d-732f25cd2c84",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7b303fda-124d-58f6-bf72-207c5d76ec59",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:fe2939db-0325-5bf9-bdf4-db6b338c60d4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:3f28475a-d3d5-552d-9e6b-db9e274b7115",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:68239db6-4000-55e7-817a-b043e411ae6f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7324df28-75ee-50a1-a097-cb38f86c14de",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:66d758d0-443a-5331-a68a-393c4e83ce7a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:45694fbb-cdcb-5d1b-a3fb-e8c426affe5b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:8cce6771-576f-5430-ab0e-9458dfda6c59",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f97f625a-d926-51c8-86a0-2c60abed6473",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:296e6fad-8c50-593a-a6bc-90d6cdaeaa83",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:1a7ce5dd-dab2-5eed-b264-6f3d9f4a96d8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:8707fca1-96dc-5312-9dba-19a547a7eaa3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:a01ab9b2-d493-5e87-8fda-fec3e595ba71",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:02f493f4-aa17-5f82-9d5d-3682b6753894",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:bbf05ed9-d285-5d5b-b7d8-997f09aa0a3e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:3c50aa48-ab42-5ba3-be0e-b0d4ca61697c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:1fbba9eb-afce-5cc1-95cd-65c270f609a6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7ce3def7-ba7d-52cc-a487-dc2ecf2f5570",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:d30f1054-8d04-5717-9584-0020efac2d2a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:0ad219b6-c86f-5c48-875c-78d560933c78",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:5d5d27d1-790e-5709-9835-7f23b7f8e653",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:255cb935-c342-5e91-a2e5-996a4e3b36d3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:a6185fc6-29d4-59d6-9104-84500b9cf08c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:cd15b51c-c1ca-5518-8746-5c58dccd4d0e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:d7d4d8a8-ceae-5a15-9030-d52d08bf62bd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:da4350e9-7a89-506a-8013-2f8245b5cec0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:35aa5132-0186-5776-b1e6-4be43d441c74",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:ba6e2f74-e35f-5a39-af47-eaa5c369c1f4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:867d3293-a51e-5c8d-aae0-f33dd984a315",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:422d0355-ad33-536b-b080-3e08acc2009f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:20a50e40-34ef-550e-a2a7-fd220e47bec6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.1.14-tuxcare.2 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.1.14-tuxcare.2"
    }
  ]
}