{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c6596102-0025-57bc-afa4-9438b9131495",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webflux",
      "version": "5.3.29-tuxcare.6",
      "purl": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5e5c269d-b4de-5a5d-adf6-90f903a9d1b5",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32b1dce3-1415-595a-8877-e6065400ad7a",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e21f26b-f84b-5780-8f7f-7626314d4a3c",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b016884f-db85-5da3-9c5e-d86c87e1d0b9",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f73adea4-cf2c-57ce-9223-0342b0d3e611",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6761db16-fb05-5552-b0d4-dcf90c08eeb6",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4171c70-f28b-5cbb-a56f-f70c2f69daf0",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dda2f89-4d7a-5ed1-a702-0e98f654289b",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52561712-5f9c-508f-a048-775ae106f987",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1de3c22-934e-58f5-aa3f-4f408a71346d",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a22a9188-3541-514b-92b0-730367bbe90b",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c10c741-764a-55a4-8bd4-15fd51bf3208",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-webflux 5.3.29-tuxcare.6."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68d7b56d-d2cc-50a0-9947-53c6854c1ca0",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba96989b-8753-58b2-a064-8c3629bce73c",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f7c2b42-1d2a-55f4-ac11-fb147a8a58ba",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd491f2b-18b3-5c63-8b56-107686ddfed6",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c5256a8-8416-5323-86d6-c8c58ba7436a",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7dee20e-bf58-50a1-8088-464655256967",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a6340b9-e11a-5bc1-846d-defe624732b5",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc467ecf-e58e-5e47-9803-7ee4dc4ffc2d",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23b3eade-835b-50c1-86c6-b6d7f76f065f",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d90cdc49-9a34-5fff-9512-655f2696f586",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b740889-1d01-5427-a337-51d43b5900cc",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.29-tuxcare.6 of org.springframework:spring-webflux. already_fixed \u2014 The target repository (Spring Framework 5.3.29-tuxcare.4) already contains the complete fix for CVE-2026-41840. The fix was applied on 2026-05-19 as part of a TuxCare backport for CVE-2026-22740 (commit bc0026ae70c), which addresses the same multipart request DoS vulnerability with identical code changes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d1fa94d-7072-59c0-8360-62dfff523b85",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80d0cf3e-8c5d-5f0c-a4f6-031f126dc77e",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9f0d1ce-979b-5255-928b-9c114199cdc6",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17477883-5831-575a-acf9-22c809529093",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bae1c83-6147-5359-bbf4-733a2498e57f",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f321342e-6c26-59c9-bbd7-af54e140bb87",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f86d4bb7-1a85-5e7f-bd12-cc4293c34405",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d51d145-7892-5e37-b255-1edd0b4c7e89",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e96aaba5-cdce-535c-a1d0-bd74d0a483c2",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0633e741-e961-55a5-b6e3-d19b9b27e835",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9664e135-f578-5022-a148-a5c64540bb6f",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54df8fc3-6eab-5195-b082-72e94566f8a8",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53228571-3532-5a65-ae14-e124edfddabd",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d6d8515-5893-5447-9e63-c54794c8bf67",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26d5aabb-6600-52c4-842e-3ee447440479",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1c74331-eae8-5840-9efe-808a5dfc59b6",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a48bbf37-51f2-51bd-9d50-ee9a884c4a78",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2257449-2a25-5f9b-9c19-40b4d56ded1a",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f49ba19-4fe4-5738-aa67-04ba03587de0",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5d9c2f4-75cf-5e17-90a5-4d8e588e3721",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a68b7fb2-1528-56da-a24e-28feec3923f4",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bbe364ea-daf0-5300-878c-fde99139e615",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0711f3c6-79cb-5386-b938-89006105a687",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7b5debe-622d-5567-8dc5-014816c6ca1d",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8318bce-4992-5449-b494-6956591172a0",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f104b143-7737-5dcc-ac2a-fdf59b1e85cf",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9094b78-4e55-508a-95d6-c5a39e9d6aac",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4093b53d-15bd-5bac-abde-c5c9d888d463",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.29-tuxcare.6 of org.springframework:spring-webflux."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webflux@5.3.29-tuxcare.6"
    }
  ]
}