{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d9e41356-82de-542f-a1b9-b94466f5213e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "6.0.16-tuxcare.4",
      "purl": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:81dde3e9-b2f7-5500-8479-fea9bcb0b0ac",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ae3bc2c-c5cb-5449-bb40-1610005cab31",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05780dbe-e9c1-5151-a2a9-c0c4981dcb45",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d853dff4-f6fc-5336-88bf-9d1003a89c27",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fa196fd-7008-54c0-9111-1c9cdea45f6f",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a2cbec6-dd0c-58f8-869d-1b2dea7012bb",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a99045d-b4c4-51a6-8add-27a9960346cd",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:804d02fa-e6a3-5c1e-9045-97d471bd4878",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89656bfb-9bc3-58df-a5be-a42386d8c83f",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3972410e-db02-5e8f-95c3-216728157a53",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41242 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79e90726-ddcd-5461-9c65-91e7a1958fa1",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:972c0e4d-3ee9-5979-9ea9-7e4403fb6c2d",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2afd0e95-c6f9-5e8e-b676-85c453b0c501",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3ebd1e9-dff6-535c-a182-0ebf65fdbde9",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b02c7f14-016b-5edc-a80d-f1aa852b8232",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab80076c-7c95-5c37-8cf2-10e8de3fb213",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eed3f37a-627f-544e-a123-43837c8e9bc7",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3f64053-3d71-581d-bbc1-8bdd5bcfcbb9",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6cf6992a-e8a4-54c9-afba-2ddddb95df18",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f486c0a-4885-52fd-9813-587560a4f613",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e0e2a1b-7c13-5c58-b7e5-c2a512a74af8",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f930746-1401-5bc1-ae89-4e17b414bbcf",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cb23a44-4cf5-594b-8a4b-8b631832219b",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c59d6f8f-17ed-55b8-ba04-a9968432b210",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8479b03f-92be-5489-8b4f-45662b711956",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8978d13d-c390-5570-966f-428a6848fe4f",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca3baa10-5aff-5e34-9616-5947bedc2d8b",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d64dc00e-d646-5e39-bf55-87f3ecd52183",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:172916cd-348f-53a7-afaa-8d791732bed2",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b160f9c-4ade-59a3-a5c6-b1d8751d1592",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a31fd33-0a10-55a3-bd1e-a7f40e8ff308",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4353b8f4-8241-5b52-b5b6-8b292619a210",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5cd6794-7649-523d-b54a-a35b48703a76",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68b3b76e-91b5-59bc-9fde-5dcc8402dc24",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20ddcb4e-584a-53bf-a0ef-b451009dba04",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ea3f8e9-954d-54e4-b3c6-9da84dc7ca7c",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93dfa5b5-16d1-50f0-9ebd-da206f0c7c2f",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35bb84b3-80b7-5983-879b-0ee281df7be2",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:529a9f31-ad29-5895-be04-8215720560b4",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05002b16-908e-5a46-9a21-d631610a240d",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:434e2c94-9a1f-515d-85ea-74c0efd5dd54",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c81b4768-0418-521c-bf55-7df53c4a08e6",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e93c457-95c3-53b2-a66a-3e4fb367d13f",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b099ed9e-6bf0-5cf8-abca-1e2380c54ce3",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:562a0449-b4ee-5937-8b13-64f0dda5b0e6",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 6.0.16-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.16-tuxcare.4"
    }
  ]
}