{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3f74a165-05eb-5f3d-b285-b29e3f36cef2",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "5.3.29-tuxcare.7",
      "purl": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:1e28c5ad-7641-5b22-a337-c386ab34d426",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c8be940-35d4-5a95-afdb-d1e4fb56e54b",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ec1bbab-6ff4-53d7-b15a-4d9b22693145",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c2d993c-e881-5d61-b342-cd451522152e",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f4e7d7c-02ff-5659-b046-549884eef83b",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6d476f5-a8b4-5b95-a358-824c42283f22",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70f4629d-29a5-5b48-9742-e81fd45fcc59",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e3697a9-310c-5286-9d94-c4d4df43f07d",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f20d373-3c3d-5da7-848b-1c0c94a6224b",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c554be8b-8c1f-511d-97f0-44ec9f2f8517",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51d32b67-40a4-56a5-a36f-ab94d2289c68",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06b2057e-a12f-55d0-96f7-318f75017382",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-webmvc 5.3.29-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4dba8fb-6a43-5202-84ef-a7c086da3191",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e40ace2e-2eab-5758-9bf8-0b726117f00e",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ebce9c7-6700-5dc7-bc30-8f55f56fd083",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e368ce6a-3bfd-5383-b6a4-d5635aa6b0ab",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76a99861-bd55-510b-83f3-f7db5245fb0e",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0426674a-13af-5a5c-97dc-7683d87fe596",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6890849-2bd1-5f89-beaf-2f79079f400b",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7874e2c8-98bc-591c-af48-96f46047ec75",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:679d0577-bb21-5448-8938-07f96ccb41be",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c49f184d-545b-5cca-874b-dec3b5f6815a",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a8f5870-31ef-5061-9066-dcdf27294afb",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc. already_fixed \u2014 The target repository (Spring Framework 5.3.29-tuxcare.4) already contains the complete fix for CVE-2026-41840. The fix was applied on 2026-05-19 as part of a TuxCare backport for CVE-2026-22740 (commit bc0026ae70c), which addresses the same multipart request DoS vulnerability with identical code changes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:332ebcd9-fbfe-5a74-a368-dd0121cc2455",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d468ff65-3674-58db-9267-30297c116fc9",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45f6dc81-d216-5426-b2e5-f89594dcbc25",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f07335f4-c106-5e3c-ae27-73ae26821e14",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffc8066a-8d88-51fe-97a2-86278db12643",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6643f58f-03b6-511d-a63e-239c36959afd",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:819482a1-e053-5686-bd30-a94f57d533ee",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:875f1258-125a-5555-921a-e314b13d3f03",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31b4f81e-8d9f-5be2-be64-acaf584429ed",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e79034d-0e51-5f88-b137-9458955dde67",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13b10c95-ee4c-58b8-a9b6-d6b76d85c7b6",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5de25e5-1687-59c6-af39-79cf9488b708",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a81e6bf2-8a70-5d1c-b55e-9c9e6f9b6929",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed092324-b80d-5bc6-ae7d-c26e14a375b3",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:063f149e-b40f-52be-b2d0-bac654d8eee1",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61fd159d-46bb-5460-bb3e-d00ab14e5c76",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d442f4e1-d1c8-57f7-81f7-6ca8051325b4",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e61acf30-6c4e-549e-90b8-810646cab3f5",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39a8157b-292b-5087-b97c-b14571c0852a",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb310dbc-8fa5-5da1-a9de-111a7057a256",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7007d06-9fb9-5e4e-b1c2-b1a906e2823a",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59cab670-584f-5c35-a178-259016a10f3b",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e30ebf19-ff0e-5c71-a2d5-c89a0d7f2d75",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:233a2a73-8676-54c9-a751-f360f1c547b3",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ea2cbf9-a11b-5d2e-95e4-79dee405c375",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85960991-298d-502a-9762-6f3f75e66670",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2003b2cd-2ee1-54b3-bef8-5511c36cc8b4",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a48233b-8b2a-5341-92df-4d2ed1b3611c",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.29-tuxcare.7 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.7"
    }
  ]
}