{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:9360793a-9a50-57da-87eb-e76016838da6",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2",
      "version": "6.2.5-tuxcare.2",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:294b2f13-f0d5-585b-93c3-42c531ae226d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:69124ab9-1b24-5f53-8072-0f20d0610540",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:3c157562-601e-5168-9923-ef585f6c3ad6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:957004d2-73f8-5932-956d-9856f76611db",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:56473c21-4b9c-5556-b80e-1e7f1a496fc0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:a78b998d-d453-5931-a0e0-e18a99403d5a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:eb3adabf-cf62-537f-bd38-9e6ad239c3c6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:de7346e7-d354-59f0-9e75-d229ea56fa9b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:913e99a1-0261-5d4c-9a98-2c1c65c8f618",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:5b1c436f-3436-54b5-9e72-ef446d72ce3f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:ee655604-4c46-5d45-a81d-be6e64b3627a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f30f77fc-79bf-5ff2-8914-ab652618973a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:af83949d-5186-5d33-96d5-ed9ba1d4fb4b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:d11a0af7-cf10-5924-b494-86130fc1b798",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:2f57fe9e-e016-5c9a-a31e-b73ec1777c5b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:643c5325-1ad0-5033-ac67-3386b4481c25",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:88a8c61e-e077-5771-9703-644cfd2e597e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:722451d1-da88-5ed9-bcc4-312deacb1226",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:6a90fb90-57f2-562e-b4a9-83bdbc95d895",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:85f8d1a1-1156-5a26-9bed-1961a95af763",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:939dd5de-cea4-541d-90b4-0929e2ee3931",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:11883b79-4fb1-5c63-ba68-b69ce41e603b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:a6b11f19-4f2e-5d89-a77d-9d1ab4d1cc43",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:bb1e43ce-0004-5c2a-9ee3-7b3e3f0192ba",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:2f7ea462-1601-5f2a-ad2f-f2cee35f934d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:ffcfd8eb-3f1c-551c-a1da-63f54fb2ff01",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47883",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:b34b99d3-5288-5676-9208-152ba66ed222",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47883 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:3aa1b8d7-22b3-5721-a234-055d6819e63c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:cb1b02a6-129c-5638-a839-c62d790c1276",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:96fb7703-357f-5619-b69a-0a282ea1d398",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:dfc448f8-906c-52ec-8e73-da3bb401fee6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:d51c3c68-9ec8-5d06-9fae-6d06a6a546c9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47889",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:520f49cb-65ef-5050-b74a-9a66b78172fd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47889 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47890",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:e11d11da-eef0-5910-8b3a-d5a00bf865f2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47890 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:01d1c725-4d2b-5ada-8dc0-bf815c03e1c5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7ea0daec-8fe9-5000-a797-4ca77886e109",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:4e9d916e-b8e4-5197-ad69-fafa496547c4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:698ed28f-518a-5bf6-84cd-faf931322f8b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:863ad66a-4f3c-5f5c-93a9-d1add37fd65c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:807939c0-948c-5add-b951-31ed750df0f3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f842c0a7-d00e-5c7a-9b3c-20891f2e453e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:873b8a28-95b3-5b6d-a6ab-2388a9c6928e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:e6ce0601-9b99-5423-b67c-f9ad78e96335",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.2.5-tuxcare.2 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.2.5-tuxcare.2"
    }
  ]
}