{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1e27b6a4-2ed1-57ed-91fa-fc14f2b675a8",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-webmvc",
      "purl": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5",
      "version": "6.0.13-tuxcare.5",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2023-34053",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:cb91ce04-8872-5656-85e7-7099f066c2ea",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:d7685450-59b1-58ab-be82-9290224b64d0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:8dec6d3a-e12d-55f9-b991-f1f09fe45c46",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a5774755-207f-5746-97ef-1c014d4ba805",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1ec74caf-c371-5802-a539-aea923168df5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:bf3e31ab-b3cf-5724-9558-bec2b94c6f41",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:79f43c8a-32bb-5c78-a6bf-ba731bf35566",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:14e722bb-6414-5633-ad5c-84009620e54d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0d77f445-851d-51d1-9445-f7efc373104b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:bf8b4e89-8294-5517-9bef-8f9282ced4d6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:6ac19ffe-fa44-5afa-8059-940d52cbc678",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:4435a619-afe2-5279-bf03-402274bfd6d1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0fe6dfd0-8063-547a-b2e0-2463b8f72d3f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1df55f60-bbd4-5049-8e97-0f937a52f011",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a10bba30-b5b7-5f41-89c9-ff0cf714ecb0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:4542369b-c357-5839-b6f3-ac9f721aa605",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:ec2bc6de-910a-511b-92f7-a183175c4809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:ae659245-6257-55c0-8c2d-8c4e41ea0448",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:eb111e85-32f8-5e2d-a0cc-0c958c3d79cd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0e56b7b2-cdc7-5557-b972-89845de6cbfb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:2ed17962-ea7f-5115-8751-c6edef79d64d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:81048c3a-bbda-5995-acae-b12159b8be3a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:93963202-305a-5d3c-8a1f-bf2cc5b75ea0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:afb61302-7386-5726-b93a-3c38a3cb8284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:8555aa92-f731-579e-9016-1eb24c9d10b2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:7b160f48-4ad0-5595-ac01-885f3520d9af",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:68cd9f9c-a283-5772-b0c2-038866819764",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:115a25a2-19fa-584d-a7ec-9e2e7d70179f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:bb489600-e30a-51d2-b2c8-17e93d6fd318",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:dfdcdd32-23b0-55cc-9aa4-b47e1490e3be",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1274fd36-8eda-529d-9cc2-3f542d1242e0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:70e45bef-cea0-59fb-ab09-412d820a4f8c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1cbf2a3d-ce8b-51a8-807e-bf913299c5f6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:c67a382a-6f1e-55c7-bb1f-aecfd532464a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:ca6c37ef-2073-5a0d-9e04-877387c54aaa",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:d7cb7d1f-a1b8-5438-98e7-e834d0d8401e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:809a9cd9-dd40-53af-84cc-1563e8140d4e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:4fc8198f-aca9-5311-9ddd-8595f0f61205",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:16dc70d6-fc0d-5e43-9767-544b7d68d477",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f39f80ef-687c-5179-b114-1b57c829f762",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:6cf2a6cd-7166-5eea-88ca-afd6a1198b4e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:688deb97-877a-5e00-8e94-203e1f4bb614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:c2618e42-31ef-5fa1-89a0-e3a10d6221e8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0de97fe7-89bd-53e1-bd57-e429da368682",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:02a78944-c18a-57a4-9bf3-015b7e35fc93",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:2aabf9ed-6291-58aa-b43d-d0f09a98038e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:597b6c88-8451-5da0-84b2-37cdbec25f34",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.13-tuxcare.5 of org.springframework:spring-webmvc."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.13-tuxcare.5"
    }
  ]
}