{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:cb4ef21a-95ca-5e71-990c-a46cbe15843d",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6",
      "version": "6.1.16-tuxcare.6",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:de24bf87-8691-55d2-9226-f42aeef7afcd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:8f22ef7a-128c-56f6-a70f-5d1f08b2ebda",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:0eb9cc61-1d69-5915-b999-6df7d4540562",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:5f517db8-dfe1-5023-9998-5234cbea9805",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:2345d2b7-7715-5d82-80aa-67c1f4503b41",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:401cdf2b-40a3-5e03-9ef2-1f210a783ed2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:40c801ad-0aed-5b2b-9af5-4b909d0dbd40",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:32ca929d-9072-5a05-820b-ae31d6eb16ea",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:5d7c86d3-da7b-556c-a63c-719217f7be23",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:73fa2060-e9e0-5ba3-8a59-9847ea30e7b9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:c134ae2e-2871-50a4-8bc1-f47c6e900666",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:642e1984-2443-5462-90a0-a2f984e1c987",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:ac37a1aa-f901-5953-b9fb-126478a20092",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:f8d558da-9eda-5ea3-975b-b486783cc148",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:a6c67985-5fc0-5402-8589-44cce1645578",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:9ae5ca60-4dee-5449-91b2-8b54cfdd0fe7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:762d83bc-31e2-5058-b276-8cff7505502c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:f128218e-2d51-514a-ba41-686981ee9d16",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:b6ee8a68-a242-5230-8aa7-ecc796ff4938",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:ca124431-747b-58d6-b4f7-3e0feae16eb9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:7bb7a7ac-1330-5ede-8661-96594a135eae",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:1b3273dd-0901-5644-80c2-ecca03a156f7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:6925f2d3-b6b7-57e7-8f6f-ec0639c14dd6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:8b5289e7-08eb-596a-a551-a390477804d7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:1dd357f6-038a-53d4-8459-37dedc5e0415",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:299c091e-2efa-5502-9e5f-5d4181b6a69a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:1345bdca-3e47-5860-bcaa-17c2d79bbf30",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:b2bf2761-1211-5086-8f26-a7faf1eea653",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:219dfa91-c66d-5fdd-ad82-343895164cb2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:81cf22bc-65d0-59b5-9136-30c1ef725e16",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:c7a73427-2aed-5330-8305-68190e88c9d1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:a059501a-e290-5748-949a-c612d5b6c539",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:7e0f40ea-248e-5b0d-adb9-a4dfa2f5908b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:720e01b0-2387-5108-a23b-65b9cf12f513",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:6200b5ed-354e-5ee4-8a28-d2e40a81f260",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:4cde5a5d-9444-5719-bd34-b43b0a60be87",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:bc96ded0-ebb5-57e9-a78c-26d2dd31f4a2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:95a8a5cb-8055-5d01-819f-1984205e730f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:ab42c670-906d-5891-9d06-3f974ca18311",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
        }
      ],
      "bom-ref": "urn:uuid:4c8c143a-1811-5867-80f9-3efd1cc29855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.1.16-tuxcare.6 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.1.16-tuxcare.6"
    }
  ]
}