{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:bf5b619e-bd00-56bc-8bc6-f0fcce3f7434",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-framework-bom",
      "version": "5.3.29-tuxcare.8",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f5aaab11-c38d-5898-a93d-65c605b869b9",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b79531a-a873-5896-945b-5adf3a64123e",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4da21ad3-9050-5b58-bf59-6cf789d2585d",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62a4aa80-6861-5b91-8b59-b339f5e97686",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f879aaa6-21b2-55e6-b47e-c1d009e977c6",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec1195c0-ec00-5831-8eeb-f8bce981dba2",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f298f8a6-4ff0-5094-b36d-40500820cf90",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:792fc01d-c6b0-5f81-8096-7e800755697c",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a880c9ab-1331-5505-8d0e-faf1f666e506",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebb404ca-acd8-5b7d-a2da-c2607a436586",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:991f1270-4137-5f9c-8544-f5b5cb5e729a",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f42aa769-c220-5170-b6fe-9b5b02f4ba0e",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-framework-bom 5.3.29-tuxcare.8."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b873cc38-7433-510b-80be-25023838bf0b",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a0c0293-d6b8-5c98-ac87-bc6e5996102a",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2fc397c-09b0-593d-876e-70b4a4bf55f0",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92ce545f-ac50-5844-b609-c7b4bbce2b75",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10fc445c-e50a-5db4-b3bd-afbd1c7a5b84",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9c1d662-8ef5-5cec-a234-a973c4b79cd8",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab6848bc-e682-5371-96fe-b27221a87208",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4305703f-9586-5a62-94b6-e13fd70e9570",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa87fcd6-d9b9-5e32-82af-5d68086f5ca3",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3784c686-79f8-5003-8370-a4103b43fc2b",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa918418-afa2-521b-b8e7-5638d07fbb23",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom. already_fixed \u2014 The target repository (Spring Framework 5.3.29-tuxcare.4) already contains the complete fix for CVE-2026-41840. The fix was applied on 2026-05-19 as part of a TuxCare backport for CVE-2026-22740 (commit bc0026ae70c), which addresses the same multipart request DoS vulnerability with identical code changes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36f8c115-1e00-5c20-be7e-958f91646086",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77b0f001-9703-5ccb-ae04-485e859b4d94",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef3f61e6-9076-5c50-9a64-677d006cc46f",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9059a22f-7e37-5788-94c0-9cc5e81467ab",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:675c6b29-a7b6-596c-a4c4-589c28ea667d",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a74d44b6-1100-564d-b4c7-23610bd3adcb",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:790687dd-be72-5cc2-b88f-dcd7285fb57c",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ce14dd5-297d-5301-8a54-10c79689bf77",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80b938f9-b362-5e31-9dd2-ba5f7613061b",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bf0c8d5-a5f1-59e4-a95e-e05c29b1089a",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:deb77943-6335-5308-bd11-ea3ac10f7ef2",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10780277-70ef-54b1-a0c5-4e4622a7a09e",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95074d49-2a36-555a-b5ab-3ecac41546b8",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ada4054-0a23-5cd9-8c50-4a9d2ae57227",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf20c7a5-914d-53e8-addd-9655cfdc3525",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25202d85-3e3e-5aa4-94a5-a40a2cda2399",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6047acd1-f2b7-513c-9eff-d5853ba0d289",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10922432-037d-5bca-b37f-db1972fbe66e",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:407d9e63-bf2c-59df-9c32-cc5202a599ab",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de234ec5-7394-5e77-972b-e300a40ce432",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db25312b-078f-5ea2-9568-dfbec7bb88f4",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7947528-3e8a-5d95-975a-03e3e1c4d92e",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41b8eb47-1ece-5a9c-92a4-93bc28dfdd72",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aebf2ebd-994b-5084-a767-2b1cd5f75ac6",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7e40022-ee75-56c1-a7f5-fc87c2703408",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05439ae6-70d6-5510-9571-54f76e977213",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cfb34cd-ed9f-588d-8a8b-79b74e538b55",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af14b933-f5e5-5e31-9b7c-5c23ae4eb291",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.29-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.29-tuxcare.8"
    }
  ]
}