{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:02c656da-cb18-5197-b5c6-02dda2ce4803",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-aop",
      "version": "5.3.30-tuxcare.8",
      "purl": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ea272f08-92a8-5b75-851a-8c5a286a0636",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0aa4f2b-029e-5358-ad2c-83b83f077d23",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9faff4c1-cb5b-5e4d-9b89-10b6f8bef7fa",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97f4f347-45d1-58c5-93b3-1b6ab63a3ba9",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2363ca77-bcc2-5ecf-a0ea-d5444cc63082",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:091c3818-424e-5866-b149-feffe3f392b0",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72c9a001-dd53-5aa0-ae73-a2281a2e8e18",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c55b616-debe-5226-a2e0-98ac75b8fd29",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5b392c5-f9be-5008-8c78-1f81e992fc5c",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70bc78a6-0829-548d-afac-3d0c51e92b20",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33b89e75-3e01-5389-92ca-6bde9a0b7101",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f206a070-f02c-516a-b0e1-f3eadc1b1276",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f5260bf-84a3-5d1d-83a0-2cd820dbdc7e",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67f5b361-7122-524d-acb0-98d4cabf897e",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73e12690-eba4-5620-9c8b-09dac25dd089",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4579f941-8445-5c6c-81e1-18cfdfa4b9b8",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c41e7574-35a9-5dbd-980b-e7a999577e89",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe1da183-3d28-5838-9d9f-3d87e6580075",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8eefe109-ecf3-5c75-8686-b0daf1eed229",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd48f444-eb1a-5edd-a254-2c7f13893ba2",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa31ba31-da19-5da4-a407-94427c3b5c49",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4cd94c0-201e-57a0-978f-85b61a01e151",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.30-tuxcare.8 of org.springframework:spring-aop. already_fixed \u2014 The target repository Spring Framework 5.3.30-tuxcare.3 already contains both fixes for CVE-2026-41840. The identical patches were previously backported by TuxCare as part of CVE-2026-22740 (commits 1a619adbfb and ee9443b0bc, merged May 2026). Both doOnDiscard handlers are present in the current code: PartGenerator.java releases data buffers on discard, and MultipartHttpMessageReader.java delet..."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64bc224c-d289-5cfd-a4eb-de83995d2c3c",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64adc965-9d7c-5286-8e2a-52eb494480a3",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c2c90df-57b0-518b-b3c2-a7ca24cc8d27",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8409084a-a4d4-59fd-a1e7-14307fd9073f",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5062018e-b26b-5dba-b824-43bd8223aba5",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97374736-686c-5da7-94fd-2ba249acfd30",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a83b10c-0325-5ac4-b0fe-48ed3c41a64b",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd3c9d06-a22d-5b34-8866-f1d02d82aae8",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a81a1d0f-5b5b-5b53-be97-d5608f162ead",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2475879-3a9f-538b-af8b-fa4f8aa3d18c",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:465227fc-0e66-5f15-a428-a29abc123ba2",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af5fc6d0-25c6-564b-95e3-12370020ec55",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab619b75-d1fa-5d70-99c3-d00f5e11d1ff",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0edd2d67-ac20-54fb-9f01-61477be64ea6",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5c8bc80-ddf6-5708-84ae-e76b9501d366",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:678823da-122b-59e3-bd04-243a927877f3",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f96fd40e-a3fc-5296-a456-f3ea53106984",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fe36753-d2d7-5707-a9ad-cbcd5b38f50e",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:416d4d22-f14a-5a56-9c4d-8db845a26d7d",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a677571b-205f-5432-94c5-7825e2fd71ef",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed7994b5-ce6a-55f6-920f-4ad0b525f792",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af69cbce-06b8-5b0d-a3fe-35ff2110b81b",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:001cd4f2-d0e9-5b9f-8185-33b175634cd3",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3669afb6-c9c0-5b2f-b899-ac6dee5f7d87",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7ac6a5e-0393-528e-8ad8-fa2588e13019",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55cc91f9-a024-5e5a-b00c-7b8ae8a900c8",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07df2a2d-14a2-54fa-8ca5-4ec2cf43297e",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d9235e2-c51f-5405-9fdc-5c69e2830508",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.30-tuxcare.8 of org.springframework:spring-aop."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.8"
    }
  ]
}