{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2bd98bc3-62a1-5a7a-bc5a-4b51a49aadbc",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "6.1.16-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5888bed6-3cce-5c0a-8cbb-126b15a60fbd",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b605dae-3bf4-56ca-973c-59b18c4ec3f5",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41234 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb8dc907-e88f-5d01-b819-079776f07176",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41242 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7c60fbc-5afe-5959-8620-3271c4b34969",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa72a0a8-5b66-5d2a-a83e-c30dac8babc1",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f74b657-9259-568d-a3d8-104025393341",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58ee8ffe-353d-569d-bfea-32120cf20cdd",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3756f4a4-777e-55f1-b85f-1032f87a3a2b",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea961a0b-86ac-5154-ae58-ed4ce3120917",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8d87b53-1a73-5e1e-8de4-52bc8ef2c766",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2d88b86-07a4-5331-bbb5-99dd2fec560f",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:172cbbd5-a9da-5617-9714-8a1063f03320",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5059423-135e-5564-9266-732cf391fa7e",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ae713f9-af96-5d7a-8934-d1e3985f56a6",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72458fdd-f34d-55ac-8e76-295e81076dce",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7fbad31-3294-5a24-b3fd-6aef2d2fdaba",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a09f721d-0027-5267-9c8a-ed6449a9c33b",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c9d8c5b-57e0-5a10-8ce5-ed6766d0c913",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a8e992d-d923-5783-baf3-ffd7bd3156f3",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fe4c9a1-4d94-5ff2-82e4-de195d4f5b02",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:04b81a5c-44a1-5222-a17b-1c8d5b7a0598",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dba03b4f-57db-502c-9e31-94ed346af1ea",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe2937e4-6d3a-5f2d-b7a6-c676627e384e",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd2eb74b-2586-529c-9ce2-5e9ff7da43b3",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5d3e9f0-7e01-5660-b4ff-f562467f9ebc",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9ae4461-e329-5b2d-ba32-c501c5827f28",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41855 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ada9b7a1-b9e3-5609-821c-812d9eb042b7",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:293253f2-f7d6-52f2-9ffe-f798a1363ea1",
      "id": "CVE-2026-47885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47885 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8822cd0-f8be-50e6-8dc7-81766cc8378c",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e5348f8-9474-5963-8176-11bda0c72066",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f395716-83c9-58ef-ad06-9ed8a76b06a8",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:921ba65e-fbac-55ff-8517-614f00624252",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e9db955-72fd-5876-929d-738fad8ad2b2",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b30bdb83-3d37-5085-a99a-e669a9dfef93",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:116e43e6-4deb-552f-b77c-74057958d16c",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35cf4e76-6040-500b-9029-3fe66f4d0f70",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ffd38c1-d9e2-5dbb-a473-a38dcd7d824e",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff568593-a68c-5c80-955c-07b04aa6365d",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7987b2f6-ada4-5725-b35a-6cadff6da429",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51415982-c626-5751-af49-7634ed0f880d",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 6.1.16-tuxcare.2 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@6.1.16-tuxcare.2"
    }
  ]
}