{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0467e588-071e-567f-899c-b7048e87666d",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-framework-bom",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10",
      "version": "5.3.25-tuxcare.10",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2016-1000027",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:fef71d96-83a0-58b3-8a03-b5e654e88920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom and will not be fixed. CVE-2016-1000027 is not a patchable flaw but an inherent risk of Java serialization. It is recommended not exposing HTTP Invoker endpoints to untrusted clients; if such exposure is absent, no further action is required",
        "response": [
          "will_not_fix"
        ]
      }
    },
    {
      "id": "CVE-2023-20860",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:52a9a07b-9323-5b9e-b691-aeb697d4f207",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2023-20861",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:b45ff03f-5648-53d0-bc74-be6d3c529a00",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2023-20863",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:fc0d8f85-39bc-5e41-9ede-02cb0a3fb291",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:63156032-10eb-577e-969e-968cc317f993",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:a63efd39-3d80-5aa3-814a-a69ce4415667",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:60b46b21-8278-5d76-b970-a9d0831450e6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38808",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:1e5c36bc-93cb-5af1-89d8-46fb06926b2e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:c651ffee-f527-5738-842f-83949fb4df27",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:4d3e1c24-0410-5639-b621-10dde11b4c59",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:71a834b1-fbfd-5576-a02c-fa1057dfb761",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:e63e78d3-fbe4-5cf1-afe3-a41877473ab9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2024-38828",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:544feab7-ba77-584d-b48b-c7fb84cba255",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:337b23c4-c5d7-5e13-a2fc-e5ae9d6641c0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:d2d1b6c3-3323-597e-95bf-b8dc198ba799",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:4817a4d3-c96f-582c-99d0-0d423a29c871",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:293d51d8-b10b-5dea-9711-cd8f92556143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:81228246-369e-5f87-9166-f329e38a45e7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:25242686-a85c-5b60-9e8b-c6eae8233fe6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:d2f4c994-56e3-5107-bea7-c7f2ffecb44a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:a3311ea5-c28b-59e3-b005-524a94325887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:29ff3554-57df-56f3-b4de-ede59057ee04",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:cbee10fd-a5d7-5ee8-b216-371ca4ea53f0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:e8ec49ca-97b9-5e1f-8ea1-5c533fad2364",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:246b55e9-30a6-5570-add7-12149dbaae22",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:d7cc1141-0a26-59b7-aa1e-83538e94ecaa",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:ffa18147-34c4-51a5-a717-48d0a99ab594",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:9c1f737b-9c6f-54a2-918a-651d79ce1951",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:b9579203-cf70-5ef1-a0f7-bba4b7e5e69e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:747a17e9-0507-525a-8035-5062e7172498",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:92ec1bca-b0b1-5bac-b340-90a8048a198d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41847",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:7e163f48-7acf-5ac5-a656-8864396c6b5a",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41847 does not affect version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom. All 1 patch commits already exist in target branch",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:66ac5cb0-b4ec-5cf5-8db0-e2c417601b9d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41849",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:72248ea6-db7e-5de3-ad33-5948ab985d54",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:2415624f-022f-51a2-8127-98d3f3d43d63",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:2c1f5854-cc61-5713-9670-cdfa555a4474",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:3b082c7f-0472-573c-8261-77c7d9c74098",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:a8b61742-8e21-523f-8317-ffde06303057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:5acda543-5439-5006-bba3-dd34dc6946fc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:df0d6730-685c-5b74-9e01-099c905ce254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:02d76564-4ec5-5b7f-8b06-6591a6d8614d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:030cb9cb-0cc6-58d3-8627-d3442985156b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:606b37b1-72c4-59bd-b026-4df4f22c97e0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:c180e2b2-7339-571f-84b8-db1c8f947f2a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:3fd65d70-60bc-5f78-b10f-4d819741d9f8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:d78ef3e5-8719-5515-bcd8-2a863195233b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:2adf57b2-ebf8-53ae-926f-e1471dd12b9d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:18a5b296-74fb-5072-a064-f4a24402ca3e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:cea10c4d-23e7-5fb9-80a4-88b8b34e94cd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:078a9866-d69f-548b-8c84-01f5b14666fe",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:66b23773-676b-58a0-8648-01aec60a9a11",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:0dc454ce-6654-58e8-b407-a6883f3b6ce8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
        }
      ],
      "bom-ref": "urn:uuid:88b9b8a5-af3e-5559-a089-f18c11055a7b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 5.3.25-tuxcare.10 of org.springframework:spring-framework-bom."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.25-tuxcare.10"
    }
  ]
}