{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7dce39ad-1059-554c-a554-42bb0891adeb",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "5.3.29-tuxcare.7",
      "purl": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:63bd7ab3-ae3e-5ea5-ae56-b779447e27ea",
      "id": "CVE-2016-1000027",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be7c378f-0add-5afe-b7fc-440ce73d27bf",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:adf6b6c8-581e-5b7d-9eef-ab4ba6984af1",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:865eacea-8a35-56b3-80de-00d7f158c371",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9906dfe-91f9-5d25-bb0e-7fac4223b7da",
      "id": "CVE-2024-38808",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e641c94c-9193-5c2d-8dfa-5ea846df41af",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a725709-6418-5153-b324-47f39c5fd16b",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe94b887-8ad8-501d-b62d-0fae7f78ea17",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02f54b31-e44f-54b3-98e5-d4525880c9a7",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:334c43f0-54bb-51c0-88f0-579da5bbe1d5",
      "id": "CVE-2024-38828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17c1fc07-9457-5690-9619-f418c7bec333",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8560196-3174-54cb-a384-6db7e6acacc1",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-websocket 5.3.29-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7794d8e0-d0a6-5a77-a7e3-3b2cd768c1ac",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6bcec12-0db9-5507-8df9-cf4ad1f24fd0",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:715abee6-8586-59d9-8681-0362b2fbd24e",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d10de2c1-d19e-56f2-9c83-b6328497718d",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e3bdf30-bced-576f-91d2-2f5995d90f36",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08980309-fb9c-52ca-9f01-e9a5fa90cdc6",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:264f6a5e-9f45-52de-941d-f38435c45e27",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:549de1d4-1a88-534b-9497-ad993c934ea2",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:940ff7c9-df62-51a4-aee9-458e404de7df",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:033a7da9-7762-5c3d-8ee2-5322683591bb",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2714e0b5-7d9d-5e90-bed7-25465ebb3a72",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.29-tuxcare.7 of org.springframework:spring-websocket. already_fixed \u2014 The target repository (Spring Framework 5.3.29-tuxcare.4) already contains the complete fix for CVE-2026-41840. The fix was applied on 2026-05-19 as part of a TuxCare backport for CVE-2026-22740 (commit bc0026ae70c), which addresses the same multipart request DoS vulnerability with identical code changes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:081147cc-c972-5b6d-a380-8ae5c55048dd",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:132ddd28-e56a-537c-b5fe-56d7d3f8a526",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20987dff-97cf-5cba-8ccb-f07aa66aa1c8",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e3df708-205f-56ba-be83-7824e116f0e2",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c694933c-cd2f-5703-b1bb-0e924bd7ecc3",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01000885-db24-5565-816e-21dcfd579652",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7184c005-348a-56e1-b15d-24b25070d25c",
      "id": "CVE-2026-41847",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5a3a5ef-95bb-52bd-8409-a1faa61162d5",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1aca1318-db11-56c6-8d06-b93c1dc5cd41",
      "id": "CVE-2026-41849",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:208452cf-4658-5bf3-9c45-2c268395c806",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:944527f3-c9e1-5fb9-80bb-abfebca63df5",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8e0d570-6baf-5c4c-a130-bcbd908a7361",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f6c93a3-211c-5322-8d78-d8a6566312ae",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d66eb1ae-7e73-5853-b917-a992227b35db",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a726476-41c9-53cd-9185-59d32ef82bc5",
      "id": "CVE-2026-41855",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3cb751dd-4f90-5b26-80d4-aa2bc533b555",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:728d742b-a7ed-56aa-a3c5-f63d06a96718",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28978302-ec1a-5541-9750-55faee08fe0d",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7a78f17-5b75-590b-b4b5-e68d92828e6f",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6f00d92-6bbb-592b-911c-eff29e6fc977",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6229ef05-3adc-52eb-b8ac-643ecf0a2d3e",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4fe57cca-83ab-578f-b6f7-6536dfc185fb",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3814d8a-20a5-5bdb-ac25-f96d42bb3c2d",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c225af7-76be-561d-9155-259acf421744",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b0876d4-08ba-544f-94c9-ffc55162eccc",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25944878-c000-5939-9c4f-aa5db90db85f",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fbf79c6-356c-592a-957c-d4d1d1c4af78",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e1ca51c-cf48-5022-aa2b-85735cae9120",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 5.3.29-tuxcare.7 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@5.3.29-tuxcare.7"
    }
  ]
}