{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3f5878a8-7932-5574-8ad8-792d0c866c1e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-aop",
      "version": "5.3.24-tuxcare.4",
      "purl": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f5d7193b-1eee-557b-b996-9450d5873a22",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56f4a5bd-f3ee-5db9-9135-204fe7dc168b",
      "id": "CVE-2023-20860",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86cb8f41-288f-5018-a08f-49e3298d9177",
      "id": "CVE-2023-20861",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1aa58c4-b5a5-5d44-b3c4-00e24035a0ad",
      "id": "CVE-2023-20863",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b8725fd-e1c1-53b1-9e33-0c538087788f",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1748292e-1cca-5157-808d-73567118dd29",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2094543-6e97-5039-b565-49272eb417f5",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d82ccaee-f228-520c-aa27-0dd4ff72b9df",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:042d9066-3789-5372-9887-07b5145e5bfd",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1181bcdc-fd00-5e89-8f79-e2de3fa6ccfd",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3971097-697c-5696-b823-62013297fe06",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57285f95-8235-5257-bf5d-61dd16220fdd",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cf8ca2a-fa0c-5d52-810c-61f0df9f4d28",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a6ee179-bbbf-5d17-b673-9a4c35a708fa",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef784286-0c63-5cca-9bda-f9fc7d1ca813",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03c16cd0-bf5f-5f5c-84ca-fd2f1dd06643",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2658841e-9126-5302-b131-d84c077e7086",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8931e199-c098-5d5c-b62c-d1737985e9cd",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05165451-1320-53bb-b542-300f2ba5fa15",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3f9795e-df2e-5e12-8fd0-c45ecae8ffe0",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7cab5c6-0199-576b-be7c-a4adf58d5bdb",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26803bf8-23f9-547a-920c-baab8552fc78",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d91442ca-59ec-593e-ac95-7edd2c57e495",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8ce5c05-bb1c-53cb-af4f-20781be7495d",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2436edcf-2d06-5fc1-bdbd-8b535c0a61ad",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.24-tuxcare.4 of org.springframework:spring-aop. Patches already applied: 7052da453285658215efc1dd5ecb0d472fde2de1 (already in target via 2c11852775 'Backport CVE-2026-22740 to 5.3.24')"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d326ce0f-0c4f-52ee-b781-fdf52657bf46",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20c114f0-2702-5503-a780-883fbc270d94",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18130d36-cf9c-5ff1-9172-d4a362ee5565",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45873602-b6c9-5f86-bd51-53c89f70e9ee",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f9c8fd9-7313-51d3-8823-6cf79191abc2",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae0dc88e-68eb-54d8-a312-3b76b334d0fb",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0946c9c6-d0a0-5943-816d-f4b16cc10bc4",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41847 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abc912bf-241c-55cf-9c02-b341e640e3dd",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9710abd4-e67c-518f-8ecb-0e99dbc78e36",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41849 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b26eddd4-c071-5af5-9ac9-c7cff20299e0",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:010b3ac7-e374-5e0d-a7c0-ef2321095b71",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3640476b-0a27-5de7-bfb0-f7fd0a7c1b93",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5175be4d-8cb5-512b-944b-534c3156e634",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c4a9887-5cc2-57f0-9cab-490f4e1c8598",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 5.3.24-tuxcare.4 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.4"
    }
  ]
}