{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:a4c5658a-e188-5398-8d98-facbd235a829",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "5.3.29-tuxcare.8",
      "purl": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:68a609cc-e3cc-55b4-9d5d-f391ccb36a0e",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3221645-7b53-522f-a0d0-ae72d0d3325c",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:365e08cb-6970-58de-b135-3fa0a6ae2fd4",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ad0b222-5a32-5ff4-bdce-32f8adb675bc",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f879971-5f81-55d6-b6e5-86db2a01049e",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:479d2902-2c7d-5490-b2ed-0ee482296a85",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4beaec28-238b-5eb4-b19c-3416c0ff36c8",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5dbf0748-250c-5c14-9368-a57f0bb54883",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9197aab7-99e9-53ec-91d0-f62e408a850b",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:450ce66c-c791-5e4f-8a65-7705066b538c",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0635c9e-2ba4-5fbe-83ae-cbac431930ae",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1f168be-1f7d-509f-b254-62f11de8a403",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-webmvc 5.3.29-tuxcare.8."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f15269fe-75c0-588e-a10a-bd90a26b118c",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c38b48f1-de70-5bf3-a8db-571677ba943c",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f75b4fc-09cc-53ad-9933-83210883bf27",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f440d53-6a4a-540b-814f-194cff234917",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec8575b9-9ba4-5828-97d2-91fe544e9d6f",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69079b92-d157-5438-8ba7-60b55a465d13",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fdabd4d-e285-5e19-a673-60c9d1cf1343",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bafeb35-6572-553d-b216-b86c5b7810e8",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72eece57-ff7b-5478-ab61-6cb5bfe48021",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dcec31c-3e16-5aa1-9afe-3f700f90a969",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:085d1a86-b583-54cd-b4c3-5544cee39c44",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc. already_fixed \u2014 The target repository (Spring Framework 5.3.29-tuxcare.4) already contains the complete fix for CVE-2026-41840. The fix was applied on 2026-05-19 as part of a TuxCare backport for CVE-2026-22740 (commit bc0026ae70c), which addresses the same multipart request DoS vulnerability with identical code changes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b47f94d-fd2b-5d17-bb21-c1926f168570",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b726c849-8b8f-57b7-9e1f-20af6cf5c076",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce66a408-8596-55a3-b3a5-202fa33954b9",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0241a806-092c-5c29-bcfc-7683e83d4f56",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:867cfacb-fc8c-503a-b21f-bb1e777203ac",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:284a41f2-ad55-5288-9129-0abbfdb03159",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df3e3ee5-ff5f-547b-b026-a1c62728a8be",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:444493fe-24b6-5c6a-940f-5e3cc2151ec4",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f204c1f-f58f-554e-9396-24827906c283",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2934114a-b10e-5b2b-bd1f-338559b7ec3a",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0547b190-85fd-5db3-a6c2-6499acdc274f",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bf0e3c5-2e46-59d0-b598-4ab73dca6f17",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ec91ad7-301c-5546-b586-d35a662c5d24",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cc09bf1-a9fc-5fdd-af5f-666e534c733f",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:645fcd14-f059-59db-9917-9577743f04bf",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38fbc4e0-b9c7-57d8-861c-7a10b10b7bc2",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e58e24df-c2a4-5f45-a18f-c31906195985",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:902df93f-3244-5cda-a89d-47e7465742d9",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b26bff6b-f3b9-5461-b781-ba651de0082c",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18acfad7-ca61-5c55-a7fd-f74c7e3ad381",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d7c20c9-46ba-558f-833b-932dbb707f22",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28112b7c-f76c-505f-968e-2b0492fa5605",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad5b5d8c-2f48-5bb2-ba74-0ac8314ef452",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed117bcb-11e8-527c-a453-b4bc64568aa8",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:edd98db6-9a2e-523b-a4e2-47af6e657978",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d3c6b53-21bd-53f3-86cd-fff2676dfc14",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2310cb5e-9be7-5e7e-b285-8abebcd71c73",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efba89d8-b6fe-537e-a924-b281319aa9a0",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.29-tuxcare.8 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@5.3.29-tuxcare.8"
    }
  ]
}