{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2d7126fa-732b-5709-bb58-4c6a4c9767cc",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1",
      "version": "6.0.14-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c074c40a-415f-5607-948f-49ede51160d0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22243 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b098fae3-7ec7-52bd-9fa4-e63f42033861",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5da47e6d-6fb2-5643-9a36-426994e8e984",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d9ab6b9e-8e27-5136-b374-28d076e86343",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38809 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e4faeff9-b18d-5582-8fe9-27591d070c2c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:fa8450d4-773e-53ea-8dd4-fed93aa53019",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f5d029c6-3223-543f-9c37-d6040cdde5f4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:64f88327-11df-5d04-9a7c-06aa3668bda1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7150f8b0-8caf-58f6-a0d4-6c88f4cd1bf9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:76aa1041-b6e1-5e29-8902-ea09834e2261",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d782214d-2f49-54be-b477-eb7eacaeb7b5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6c9c460c-6afd-56f3-9c52-f51374e9c45f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:46282105-6a03-559f-9c31-49dbecf06c1e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cccb5aa3-ee97-552f-a330-fc0a2a9691e5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:54b8c701-1d4d-576d-a2b6-38713587c90b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e49be9da-5d95-5f6d-b01d-339a0dac5e38",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:111bb4fe-9253-58cc-a81b-1246209cf858",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:93e6d841-92f7-552f-8bcc-381c56936f52",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8d59fabf-d56f-566f-89af-55372585ab78",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:93c5583b-1c4e-5181-a7b9-c7560028f6cc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:252c8bed-8316-5084-b47d-f3f2572a4f22",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:43e91e8a-2cbc-5244-bd4d-43f38fce348b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:5c0cf9ef-7740-5cee-acde-914b55c2daa2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:06c6c6b3-ead1-581e-8cc0-1149d5ee4ed0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8df79f22-dc3c-5c61-b241-0494a8cd44c1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6bd7d028-15b4-5b4c-8d25-fbe2904f75ef",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:11e45f15-ee9f-5d1d-8dbf-d7f3ebeb67fc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b819c143-7478-54b4-af70-d46cfbae4d27",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9a483781-27f6-5b61-842b-984953180455",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:28df44a0-5e59-51e6-aac1-1a9ea2973083",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:61c028a5-a379-5c09-b6be-3f5a7ee7fa25",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b3c54640-65d1-5333-9cf3-c978971c69fd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f33efc67-9c4f-5eb3-9269-f47c6cb4a040",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4ff7cd9d-ae1b-5758-80ad-69748bc23237",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0c3549d9-e567-5dae-b06b-3a42a1bdab9d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e72f96dd-b7e7-56a0-9b7c-58120b5faba3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:37f03e21-bba8-5631-a0ea-1d17afe479a7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:de8bd9d4-445e-5df3-b981-c30e86e285fe",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:294e22fe-05eb-58be-9e0d-c0df0f76e7a2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:70598d51-47d1-574d-9064-58d4fffcbe15",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a9a63b65-40b8-529d-ba7d-112da42e9d0f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:505525e8-bec4-5225-9bff-50a26035bc91",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9fcda1f7-aef4-56d2-bc4c-2b7a519a4e60",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f09a2da3-af13-5405-bc2b-dabb4abc16b0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4de3a7f3-45b4-544a-9fa5-6c8e8f0ba7bf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e9a8c77d-377a-5f10-a40f-2d8cce1d5aa4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.14-tuxcare.1 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.0.14-tuxcare.1"
    }
  ]
}