{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:60ff47d2-f2e7-5cf2-8699-cdcacf25b142",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "5.3.29-tuxcare.6",
      "purl": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d5a90d68-8650-5153-84cd-5fb3b0b22e9e",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42b8c08d-d6f7-5f9f-891b-d97c195c793b",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3e1bc98-86e9-5a85-b9a1-afe04eaa070c",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb080ea4-09b8-54bc-a38b-73a48e426449",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:534e5d7a-de2e-59c7-85a1-4e834ecde6bd",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c046db80-3245-593a-96a0-33d569ce5134",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c82a5a1-c295-5a05-8a4f-7cb61a94497d",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7210d35-8ccf-595c-be62-35caf188d3a9",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c7f8c43-3061-50c9-8309-0d6db0cc79a5",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17c646af-64fa-55db-bed6-cbfb4a38a7a1",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5499dcd7-6d47-5370-aca8-e3d00bcff738",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fcc11f38-41e7-5fc0-9aee-5b18b75fc5a1",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-websocket 5.3.29-tuxcare.6."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8845114d-bbf8-5ea1-95d4-2ed268058a57",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94db2ba4-70ea-584d-ac75-bfe35e64755f",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81cfbb53-4152-5746-98c0-015779f4ddce",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e45f1df-8fea-5469-8e44-dbd007772898",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14f7935c-8c00-5491-b552-406f425e152f",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a07ae146-069d-5285-a6ae-1e3c68b76dcc",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2daa6f6e-1cf4-5a47-822f-67e69521754a",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c8faaeb-fa68-546e-b1be-b1ce49c85e78",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db218d56-6867-51f0-8b60-0cff01cdb308",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb1a8dc3-4361-53ff-b6cb-89e85a0fe6e6",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:528a22de-a4ad-56e4-bf5d-4a5111f41828",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.29-tuxcare.6 of org.springframework:spring-websocket. already_fixed \u2014 The target repository (Spring Framework 5.3.29-tuxcare.4) already contains the complete fix for CVE-2026-41840. The fix was applied on 2026-05-19 as part of a TuxCare backport for CVE-2026-22740 (commit bc0026ae70c), which addresses the same multipart request DoS vulnerability with identical code changes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7d462c9-86f2-5e82-b63e-1e93e5ac4d06",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:699e467d-6c6b-5f1a-97cc-fc1247351f74",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b87c59cf-fe1f-5895-ab91-79ef034c376c",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35830566-a29c-5ddc-b3af-100af4ea8bd2",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60970107-e6ee-533f-b05e-be9fb303344e",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c310d118-ee64-52c4-96bc-f9d3ced8abc7",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a0d67b4-e32a-5680-81c8-dd9f35c09b53",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7df23b0-182a-56aa-9d21-3c13aab07685",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:669dc7d5-dc3c-5076-b3b2-06ed1e5f3ac9",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff137ff1-6734-512a-9c96-c17807622ece",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17214e53-652d-5602-b8f2-df9cde5d5c37",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd703982-cfe4-5106-a3fc-9e5b205de0e1",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a724171a-d074-56d8-bb67-3db289e6209b",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c340101f-4754-54e3-a7ac-4da9c72348e7",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:863dbaa4-e2fb-5c0f-ac7d-16c323c95416",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80d3fea5-4415-5614-977e-3ff5e8e1bb21",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4e842fd-6bb8-5467-a6a5-ba880074ce91",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b50659ae-2e37-5000-99bb-c5c1a3a988ff",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17517c3a-f7f0-53a1-bfb9-34d654840a2f",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c451739b-4d61-5ad9-8907-a36806a5e20c",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7f2b84e-0ad2-5c43-a638-b50e93acd430",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6514dcc7-c5b8-57e1-8b7f-8affe337b65e",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8478a32-6761-53c1-bbe0-2bd0c1765670",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32cc4e3c-9775-5013-85b8-6793a63347af",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbcb73ea-39ec-5683-b1ab-6b26c66fe979",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf4c621e-2a47-5afb-81b3-157ae38ab9d4",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbff82cb-0a98-54cc-b8f3-1c234d77513e",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8ac8e4c-10c5-56dc-9fde-ec26f9942d28",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.29-tuxcare.6 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.6"
    }
  ]
}