{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:5bf3cced-4d73-5a28-bc9e-aaa6ccb0b877",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-jdbc",
      "purl": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5",
      "version": "6.0.12-tuxcare.5",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2023-34053",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:06fae87d-fe98-548d-9e39-b5027050db84",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:3fc65bb7-5d01-52ea-ae4c-1e3aa987518b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:c5d3e47a-18aa-5bbe-8d88-dbac1071c780",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:6ad94588-ae03-596e-8c7f-4625f0e74aae",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1b6efd53-834a-583a-a0b7-8715a5848d66",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:c6c0c65e-7a98-5b69-8689-8a5408d95734",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:67133683-b4a1-55f2-a5c1-d4c5c743d13f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:ce1d49ca-cfa0-508b-852a-cbe3896410c4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f4b07c82-7f35-5bc6-98f9-e61f91c1f5a9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:d636020c-7839-51fc-b96b-18ccf05a44ee",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:5d75ccf4-db7e-5c9c-8fe3-accb49eef08b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:6b92e61e-f122-5c13-9889-391c4781bdb1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:638d038e-cf1b-5709-9cae-c0c3348a847f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:d6c45c7c-026c-56cb-a174-ba1bb4af7958",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1f631ab5-6e1d-510e-bb91-4c0f6516d58d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:ceaed7d9-e081-53f8-a07a-552242d9c49b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:78ff9bf4-0910-52be-92ed-282a341a1234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:2bc39880-c237-553b-a038-bdb760eaa5dc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:93ce1a26-2cec-58a9-8780-c8eb1b87861b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a55e40d2-ce64-574f-a15f-a479fe099ef4",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:59606ed8-a5f8-5014-8397-be075f70a4ac",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:9e264ab6-5b7f-517e-918b-e44916c44322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:67976cec-1989-50f9-8a43-c12c26f68889",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f4068d49-e412-5bc0-824f-9125beca93d3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:654ca2bd-cd7c-56c3-bde9-56f0e4a56e50",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:165cee06-68ee-5846-8a8f-177a662d0b8a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:8bac37ac-3401-5640-b540-c19c61b0deec",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a2ea0c28-f838-5517-a835-b5e44faf856e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1490c1aa-af65-5fe6-97e4-a22a4588cd77",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:66fa1572-ffaa-55f3-ac03-262a406d385f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a6617e29-a798-5eb1-bc11-4b2b144e6937",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a45be613-91a2-5fc4-83ed-17e32f817467",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:8dc0196a-39f2-5c8f-a2ff-ba7553316802",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0092a6f0-e889-5655-bc35-ef1afe7183ec",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:7dc5b3d9-11b0-52d6-bea7-06f43be31f44",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:608b15a6-2497-5866-85ef-fa694d65493f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:16d2f9de-15b4-5b06-938f-00d7e01adec1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:46df8fd8-c256-54b0-8c68-17056f5a766d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:3cb2d251-46e2-5333-b40f-66c208e3c294",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:841ab570-51be-5c3a-b448-3790a55b0d6b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1191ce2b-975f-5a82-ae52-b3256c44b0cc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:b9738b4b-ea66-5c52-ba5c-4ab4c8b14177",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:28defa1d-ee8f-5d97-bf15-62edbc46d320",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:3461d5b4-c7bc-51e6-8d08-0ac3e89063e9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:ebe82d13-3d22-5798-bb77-4c49eb85800f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f9d19234-5771-5bed-9b2e-568bf100926d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:bfcfeebd-ebf0-58ab-8d72-9b57a2d02dcc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-jdbc."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-jdbc@6.0.12-tuxcare.5"
    }
  ]
}