{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2903a8c6-2750-51fc-a274-97a549fcaf80",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-jcl",
      "version": "5.3.31-tuxcare.12",
      "purl": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d38641e9-2ec7-5113-addb-97568eace660",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79f8b9f8-b60f-5cf7-894a-795fb6bd6a00",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e824219e-ee10-5cbc-9e80-1a84e5a2695b",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4abf153e-8876-546a-8ad7-91873945094f",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:368c1ea3-e5b6-585e-8f9f-40bf34e13c47",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2afdfac-5e9b-52f8-9bdd-f03e4f73d699",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e10731d-b767-57cb-9a18-cb7be585aaa8",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2673d900-086e-5668-820c-e9f3d87e43fb",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de9c7457-fb49-5d37-8749-677f722c8d2c",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2c16062-fedd-56e9-87e9-d4b390afd98e",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b62fc79c-3f01-5592-8eb3-62626b733739",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c5bee4d-d9f3-57b3-bcdf-88163dba5ed8",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-jcl 5.3.31-tuxcare.12."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29994a68-5cdd-5630-899b-086cb0755a10",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20bb971b-ce01-542a-863b-952afaf1b404",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79e47b80-91c0-55c3-a3f2-90149af70480",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03af1c3d-5f91-518c-bd53-55802e7daa5d",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c364a2ba-16f2-5d0e-a724-75685a14c6a9",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f430414-33ad-5704-b85d-472452087471",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:694453df-23ef-5d5c-92aa-26f4c4c89d07",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:691528f7-1eb9-5bed-ba70-c59eaff5eba3",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be3221cb-e388-50d5-8853-e073b5733fe1",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a5697d4-fb82-5cfd-8aa9-67826b05899b",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bfc6d6e-d990-5860-b965-0afea6dbb00f",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.31-tuxcare.12 of org.springframework:spring-jcl. already_fixed \u2014 The target repository (Spring Framework 5.3.31-tuxcare.3) already contains the complete fix for CVE-2026-41840. Both required doOnDiscard handlers were applied via commit 615477c88f (labeled as CVE-2026-22740 backport) merged on May 4, 2026. The code changes are byte-for-byte identical to the upstream patches."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1f5c1c1-f302-5260-b196-580f32b17b4a",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eaffdb55-e716-5220-bb57-cc01dda5f861",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0879b42c-5528-552c-8b28-aa8d309ef057",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ec2de0c-ee2f-59ef-9e4d-adc53bab5814",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65d8663c-8af7-550c-ba59-3d9e4fd6bed2",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bec7dd5f-baea-5d6b-936a-6c0425b34f06",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56abba47-a060-5a5a-bb32-4e122b5b0441",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f996ce58-f8f1-5099-9481-5d729150f1b0",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a2d7bdc-920e-5663-9476-36e42ea44f3b",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab59c9f9-9482-5535-808a-19f8ae5741fe",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7a204e2-5622-557c-9084-3b9b34474ba5",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41851 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4365082a-590b-59d5-827d-7d55c2ad979f",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:673aa140-7c23-5976-9a3a-773a3870eb3b",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8897ac7-8f43-50a2-b451-b7039a771145",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ff60a3f-8460-5573-b78f-1ea945a0ab06",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db49e6b7-a8a8-55ae-aeee-5232fd07a855",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d89bfe8-66ee-5c03-af40-fcc5a9ecff4b",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86d2bbeb-9b3d-57f1-92d8-405e379268c3",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:464983d3-d182-5f3d-8952-733e1d028b96",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d4225b3-28ae-5f31-92be-184cc99efedb",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d2a5a27-896d-5d83-882b-524cc14ce385",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:054506fe-5a1e-554d-988c-ab9a1ae8a931",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:402809d8-f5ae-50fb-80f4-8e96acd314b5",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef045754-dcfe-5b48-b2b6-9aeaaa2c3505",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12f94c3f-887e-58db-97cb-31d9a3553dab",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d915f7fb-9632-5423-a56c-ae15d5c2678b",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:367fa332-ef88-5cb7-8ae9-ae81c584bd08",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63326b24-f2ba-5e7f-87b0-ce3847b74bd7",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.31-tuxcare.12 of org.springframework:spring-jcl."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.12"
    }
  ]
}