{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:95566342-c9af-5ff2-a644-e06602d3c8d3",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-webflux",
      "purl": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5",
      "version": "6.0.13-tuxcare.5",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2023-34053",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:44ca7890-7d79-576b-9254-ffa42a7fbf22",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:eea5ea56-2e19-5467-8b45-f23ef4f58c86",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:4034d35d-f20e-5450-be4f-0d731df38ed2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0c0e1828-cd21-5da4-968c-0cd60afee40a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:5d47e3b5-8787-56f7-a6ef-8a504a818727",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:91f18314-d9c3-5520-b24b-2bd230a38815",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:3280781f-88ea-5bfb-bdbe-c447933b64a9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a6557210-32d8-5bff-a78e-8ef07daedf21",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a41bc95d-113d-51a2-95fa-281c698e8819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:20ec77ff-40c4-5cc6-9229-38f44a70b7ab",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:081e80bf-9a67-5942-888d-7399a2b9482f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:2498a566-f388-5502-8159-f0676210a411",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:74ab241e-9976-5d77-a81e-5c346d251beb",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:5d698e1e-4cf8-595c-9431-ac2f8707eedf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:b3fa3896-f804-5a75-85b6-295b2947167a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:5bef190f-ed0b-506f-95b9-c8525144a445",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:695551b2-e0b9-56e5-ac52-7efcf691dc2b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:282f4623-1aaa-5191-92d8-f6be6898154e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:4f324121-9724-50ec-8cb2-bf163f460bde",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:50e85be6-3481-5145-ba9a-5b244b9041b0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:ec0ab403-b82f-5d85-acbb-095f1931e8fd",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f0927212-bc10-59e2-a178-7b6a6a3a7867",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:93b9ad65-0e5c-5c6c-ae46-799b03b826e0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:95171507-73cb-5477-a548-3842d4c724b8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:938385ed-11ed-56f6-8eaa-ef533040d343",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:9ddfc5aa-2aa2-5733-8963-49b9e2c32ee7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:17bda8a0-04d4-5f0a-b185-4c4232e124bb",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:5b83eafe-b59b-502e-b34b-23b486c825f6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:e6eca046-6c92-559b-bfcf-a579ab66789e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:56c40f79-e91e-54ed-86c3-aa66ddfdd625",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:2f81c181-6d2b-5527-aeb2-5b0f8a4addcc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:28811021-6d11-5379-b3ef-ae64863861dd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a143c11d-b9da-54dc-8d26-cb88e1d72210",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:102f69f5-3ef0-56ca-a400-89102d4a651e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f8e5f78f-242f-5df3-b0d9-96055d480f4c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:cf6a9485-9349-500c-bc00-342328061cb5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:b24606f5-b1b1-52d1-90df-74f994a004bc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:3a249ce7-3721-5fbb-9616-a64c3a8bd7fb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:3ee1360c-e6a4-5372-8c0e-1b80ec09cf96",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:4e1e1f5e-dd0c-5236-8bb1-37de7fb4dbbe",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:077af5d1-5639-5db9-b796-509b7467c9cb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:be875188-be9d-56c5-bc42-ce35c47be437",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:85e67220-cfc1-5e3d-99ef-f5ec65418a1e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a21007cd-21eb-57a8-a2a9-1bb57a9ff0eb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:6c5c982e-9577-519c-bad2-5e3104d1c2cd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:fbca3f92-348d-5f8a-ab55-9163c69c052c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:2e913781-0ef3-5678-a56f-48a93e971fe3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webflux."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webflux@6.0.13-tuxcare.5"
    }
  ]
}