{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:89944b37-4e94-5cf1-8974-c68cf41fa0f8",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-websocket",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1",
      "version": "6.2.3-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a5a7a42d-6652-543e-982a-7edec8f5332c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:69896514-3a32-5598-920b-b2b8fae7811b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41234 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2e254246-0d0d-5153-9739-981e38f03aa8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d51bae7e-d702-5c08-8016-6634455485df",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ff23e1d2-dba8-543a-9337-809257d47cde",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:f577ec5f-51bf-5393-8c99-6059a9f288d6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:49b49836-a185-5df1-8ddd-d93cfe1497e5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:882cf240-2ea6-5dc1-bc74-b9c4a790bb8b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cc8abae8-c701-5732-8cdc-bdf28006c332",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:31e66cf4-3df7-54ad-817c-fe4243364d87",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:04821ae9-80d4-543e-a6a8-a349f7cb22da",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:67071973-d102-526a-96f1-3052bfea8fa1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:081a3cf0-945c-5df0-8e91-0df02932a28a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c1cb45fa-a7fa-5662-9dee-6a9ecb516f83",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4af86d4f-ef00-5d64-8492-39ddbee1ee15",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:75d8d182-e9ca-5eda-ad8b-a4537d36f21d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8fffa29f-9703-5b94-b579-26a6650ccae8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dff4b407-791d-55cd-a296-6d54c5cf174a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9ed6d4d0-53d1-5f93-b306-e4de1fdf4883",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dc0ece11-e3cc-55f7-9d9f-84ae329fbc55",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4c80de81-3b67-5ab5-b687-97eee896f2b9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2e27e0fd-3e28-5ae6-bf14-a2a0f5d54eb7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4251cb15-2424-5f73-ba80-ff5bcd153a52",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:89f2e6e9-4745-5ebc-a3f8-6a6295646892",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:638c421f-eec8-5420-adb5-e0748f8d0062",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6ea18db8-380a-5356-8998-6b3ebac08795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47883",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:932d084c-2889-5f44-b647-4322880dcfca",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47883 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e8e51a51-bab3-5d4a-bc25-6b74ecf50c66",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e33a6771-a079-564a-9df9-e11ba1a7da7d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b8ce5541-2999-5685-80c0-0d43e750e2db",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cb5b92c9-6fc3-5a7b-9866-509af6f83da2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:7ba1edf0-6d7a-5956-9464-e4f75546342d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47889",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8e31e982-a5c2-5d12-8d43-4dda75f4fa0e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47889 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47890",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:aec5ecb8-cb6e-5a70-88fd-239ddc739d30",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47890 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1d98bc9f-dbe3-5502-8bef-e60e8ddf535d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1d8ee7b4-eed2-5fe5-9049-3464243d445f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cb38ed92-0346-5b90-8d8f-20fc2d024ff6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:71650517-92b1-582f-92c7-b6a16e5a4e42",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6c2b0e17-199e-532c-9557-5ab79e6bb4e3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ca5e810a-3a73-5578-b3d4-1db0a9c91e02",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bd51ab1e-5d18-57b4-84be-3c220996e2de",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3d92daf3-3cb9-5bd2-8f91-9c1f67409201",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:e027ad93-cd96-5d11-bf28-0c8d6dbbf01f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.2.3-tuxcare.1 of org.springframework:spring-websocket."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.2.3-tuxcare.1"
    }
  ]
}