{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3c6eb5d4-f7e4-5066-92f8-a0f6731a3bfc",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-framework-bom",
      "version": "5.3.31-tuxcare.11",
      "purl": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:babbb4e4-4890-5dd6-a811-266c030ee1de",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a92243b0-c40d-5d99-915e-188884f600b0",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3dccffed-6047-5717-8a19-a1b6c3b0aaeb",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1563ae7-db14-5d5f-a537-d0d52adfdaae",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ec0a752-c2ff-5062-a1bf-c855c2e4113d",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ddee98e9-1dc3-5b97-a33e-7be32a7f1548",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b442d757-0be6-5029-8417-83587dfe5198",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce2686e1-b315-5cc2-aeee-42c9aead8b07",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c339988d-1dc8-57c4-ad86-72c9247c3d5a",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f53a3bf6-8d0e-5188-a729-39933ff3967d",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8595ecfb-1cf1-5e1b-b0f2-ded1948de8f3",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac96a4a1-fd72-5a3e-ada2-0320a324fb5a",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-framework-bom 5.3.31-tuxcare.11."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84127b9c-4df4-5658-aad7-0ff50af96fe2",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc91ad9b-af1a-57b0-8f7d-43888be17327",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ea6c5d6-03f4-5f78-b87e-4a3fbe000774",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e964e02b-048f-5d04-816a-6f950fc585d6",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98d8908d-2d93-537b-a04c-bf037f112a83",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25ca12c0-7181-5241-8674-7c09454b9762",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de83a3ba-b02e-56ef-8986-07e8065e5667",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66104254-8c4d-5409-a61b-fc9af57cbe2a",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e7949e5-4533-5d74-a0b1-1fe1ddeede53",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96742f00-21ec-5154-9f5e-58b5516dcad1",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8587a83d-71e1-59d4-a863-477b872726d1",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom. already_fixed \u2014 The target repository (Spring Framework 5.3.31-tuxcare.3) already contains the complete fix for CVE-2026-41840. Both required doOnDiscard handlers were applied via commit 615477c88f (labeled as CVE-2026-22740 backport) merged on May 4, 2026. The code changes are byte-for-byte identical to the upstream patches."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5c69af4-a43f-583d-8f7e-8973cbf3678a",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93146b20-5c75-5826-81da-d78b0ac900f1",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f186db64-e97c-5b26-802a-31ee4f032093",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:331f59a2-b18d-5a10-94d3-4991f544da74",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ce0727d-2920-5967-bf91-cf645039000c",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a4bbd77-1376-5557-a7e6-2ca49050c497",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c1cb71f-f056-582e-95a2-f8c1629c19c5",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d30d7250-c175-5728-ac20-08a9994f786b",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:edc8dd50-5354-550a-97d1-1663968c151d",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66c05f4a-7986-5148-a9d1-f409f9ab2edb",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7521bb81-49b0-5b98-bed0-92298d242933",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41851 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5121968-f08a-50eb-8130-1337761ec260",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0327d940-132e-5818-ad12-64202745e069",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4a3a6d4-3436-59d6-84b2-fb9c3a7438e2",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27e25956-9cb5-5d69-9b6d-bd1ad584ddc1",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41d41e6b-e89b-5d60-970b-1b0300c9d648",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20665f89-3c39-5dea-abc9-de53e81d96f7",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc8decfd-2d72-591b-b662-f6f972880a56",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2c6e392-465d-526d-8001-8f0140a97eec",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46aea1e1-110f-5de7-8185-bdf327b28de4",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:155c460d-b9ef-5197-936f-b172a53ca227",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21f69180-4a72-5dea-8539-9a141d669be0",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3948ac16-0fc5-5a98-aa36-a96e4c7f38bc",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d386b1c4-1e74-5bde-964e-8f08692e2036",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2a90fc2-e38a-597d-8e06-00468cc1d691",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cabfcbe5-ad31-5f38-b14a-719d797c06ae",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a46a554-b59c-5537-9abf-1daa6f7b9dad",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e31ca938-beb3-5aea-b701-58e0aa8285f0",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.31-tuxcare.11 of org.springframework:spring-framework-bom."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-framework-bom@5.3.31-tuxcare.11"
    }
  ]
}