{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2b1065e8-e68e-5a8a-a383-0d41769e8a1e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-framework-bom",
      "version": "5.3.29-tuxcare.6",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:4e05301a-dda4-5695-b9b5-847ee718d459",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcae6441-819e-5a02-bb00-55145a69b0ef",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e0ecd33-ca32-5427-859b-840a029fba7f",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3350df2a-4bdf-50c5-984b-249b62c14ab0",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9da051d-37e5-58ab-a800-1920e8f765c4",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc207c3b-f9b5-59fe-97be-98844b67590c",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea9851d4-61d1-512d-82e6-9a42bd6b6cf2",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62b2e48f-dcfb-540a-9945-919dbe02d5a5",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a18df80c-7624-57b4-8fac-f6deb705f6dc",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2531946d-24fc-5ed3-969f-37d825a3382c",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab131ec9-f19c-517a-a461-52ea135418a5",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f684cdca-2d39-5caf-b409-ef06c2886497",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-framework-bom 5.3.29-tuxcare.6."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9abc1c0c-e11f-58d8-834b-8fd78a280b6f",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7f66719-f041-585d-a519-093c63df675f",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87b3f8f3-3841-5d6c-aa26-8feb25162e64",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a9bc6f0-82c6-598f-bfab-4e818a91680a",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5609c493-b0fd-5150-9037-fc6e2dbb5670",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20adaba1-ac31-51ef-822a-a48848de6ec0",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:806e7781-ebaa-5d6b-9aec-f5ea0f3ae5d0",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfc95742-0f5c-5701-bd9e-376c2229b18a",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59f177f0-d9f2-5aed-8406-63263a934dbd",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:029ff16c-f1be-5226-a0a9-d313e4a14ea2",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e376dab-8c9d-5658-9913-f0b81ac47dff",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom. already_fixed \u2014 The target repository (Spring Framework 5.3.29-tuxcare.4) already contains the complete fix for CVE-2026-41840. The fix was applied on 2026-05-19 as part of a TuxCare backport for CVE-2026-22740 (commit bc0026ae70c), which addresses the same multipart request DoS vulnerability with identical code changes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85e72487-52b7-59a0-85fe-6c51cd708b80",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52b3d4f6-87e9-5a61-8e65-66cfa7db335f",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4abc5f83-9cf6-541e-86d2-dade5259de71",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a597dba-e8c0-5bd1-925e-6bf0809ff61a",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7277676-db76-54d7-834d-1f1354991fed",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f38ac15-bacc-58ef-b73a-f3cdddd56bcb",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf783ffa-5be5-5476-a4a8-040ea9872637",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96cf6117-0f77-550b-a88e-1e870906612a",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c3d4d5c-3a1c-5085-b15a-339a6d0c9dfe",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35401ced-ba12-51d1-9c6e-50ef3ba04707",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfbd1cff-13bd-54ad-b7ea-343cf1b22f5e",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e50e189b-a1d4-57c9-a855-7f207e9817b5",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d7067e8-f831-553f-978b-90b11ec998a2",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:582c6f05-9489-52b1-bd69-5025a973f7b6",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4fae2ed-8604-5d75-9172-ada5dd22aee1",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4baef8d-4d2c-5248-8774-676ceecb6d52",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d4cd0df-5404-5a55-b3ef-164231816e5a",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:208c6776-3355-53b7-b633-ee64f09047f4",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d76d41bc-3376-5749-a5d3-19174bdcf8a1",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:156edb0f-5394-5707-8013-bf09b154b303",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00b66326-dc05-5f90-be4f-f585ce33ee72",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8da1f891-f390-5fd9-86ff-333fcc363e20",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17e8961c-e1fe-5dab-a21d-01cb3bd40bb7",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27bf8326-8fa7-557c-97ba-469578335e1e",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1085e35-e0a1-5195-8db5-649b78ac6184",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3f500a7-4ca6-5cf1-97c9-3db57b70f201",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:872c8cd3-7e86-55b4-992b-e6c26446e3c8",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:895eef10-792f-54ba-b2c5-f79c18482e48",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.29-tuxcare.6 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.6"
    }
  ]
}