{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3fb7cd64-ecaa-5ae5-98fd-eec6535e6a46",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-framework-bom",
      "version": "5.3.30-tuxcare.8",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f9a46ece-270d-5c80-bf8c-b0887722d310",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28195ebd-f8ea-594f-a70a-0aefaa28d283",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d826ad2c-d94d-53af-ac27-845897e2669e",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59a18aaa-cd92-519f-9ae3-a63f13344f72",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0ff7753-a585-5ef2-bab6-e4f558340f04",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b3d7468-eeb6-5513-b28a-3114e7ebbed6",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8a020e2-2679-5271-96d5-72fed41e1d44",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a1e6c6e-d2f5-563b-ad4e-1f7d73e12fd3",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2dc0acdb-dc2c-503d-9c93-b457d0d5bac8",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9ee7370-e4c1-570d-a6bb-45692abe01e5",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d006c60a-f4d3-55e7-a87c-92d24f579336",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6cd78f77-6826-5b8b-9835-fa4f0ba72a36",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfe790f1-c50a-5303-81ec-41c6a0af4bf4",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5dd11749-9072-5145-a1c7-ab65a349e1d3",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75dc4170-0356-5cc9-9f6c-d97e16770c5d",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:445e415a-5439-58c6-b9b5-673609587b36",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18782e4d-7b59-5300-a4be-f91e0fb7f81f",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83495154-bde5-556f-8a44-3dcf00fa6efe",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66f2b57b-e29d-5b0d-a21b-36f26d3247ca",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1416850d-28b1-5f5d-8f9c-b01ea2aa05b0",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63ccac70-353f-5071-b5f6-a57c336e88ad",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ecd12608-a0ff-50e5-a8d5-7ed2547cb997",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom. already_fixed \u2014 The target repository Spring Framework 5.3.30-tuxcare.3 already contains both fixes for CVE-2026-41840. The identical patches were previously backported by TuxCare as part of CVE-2026-22740 (commits 1a619adbfb and ee9443b0bc, merged May 2026). Both doOnDiscard handlers are present in the current code: PartGenerator.java releases data buffers on discard, and MultipartHttpMessageReader.java delet..."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c78d7122-609d-5d27-9cdd-05f146372584",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7408e3a6-c620-5575-a513-7d7265b6b774",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69c32658-d082-5cab-b41a-beff3f5a7bf2",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c42145f6-e889-5080-acd2-5100cba3e341",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:316e55a3-9b43-53b8-97a3-db907fb14e2d",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf287a8d-7ee9-5633-b11b-5773cc9c721b",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5179e7a-ed29-5031-bdf5-4ff6737787e1",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d085321d-2a39-5311-a02b-a1eab6dde82b",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aee7c2c-c0cf-5529-8c83-0844ed3d804a",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d49ef6a-eacf-5744-9da5-bf12737aebe6",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:516fd60c-1018-5a47-835a-79b145680716",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bd65828-526b-537f-919d-558de27dfff6",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91fd67e4-638f-5be0-ba0d-e85af000aa4a",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5090d23c-2e72-5092-bb98-48ec06d63358",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e46fc3ca-35d8-529f-ad7f-602c3b017fbe",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:979863cf-b208-537d-abdb-581701a86b6a",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40a66746-7939-5ad0-b080-102d231b0232",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e13b978-344b-5766-ba53-25bc28dfaf63",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a54979d0-35db-5bf1-b7ed-f77343503b48",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc4c337d-0af1-5113-b217-5426799b6005",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:04fb9203-2bfa-5abc-83bd-1c7fbe8c1213",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70154afe-cf4d-5220-9d63-fcba1722d408",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5df55951-3b0f-5a4a-b1f6-c3c81d10f631",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12e0f2a1-785e-57a6-a181-5ffa1c4991ec",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6a5892d-c25d-559e-a7ca-4b2d4f05f9d4",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47504fb1-bf0a-5fb0-85f4-76f3f6d35568",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c093e00-cbf4-536f-97ee-534bfed83712",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1541aed3-912a-522f-89c5-ceed2029a121",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.30-tuxcare.8 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.30-tuxcare.8"
    }
  ]
}