{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c98ff02d-ceb6-5a29-8a02-e664dd99febb",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "6.0.16-tuxcare.1",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:19027042-0b73-56b9-8a88-9e3457f21e7d",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28f9f1a9-9beb-5259-bab0-060b236993b3",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a5b559a-baa7-52fb-9201-c5f4b87b0bd1",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8eff318f-8c1c-5aea-bff9-70fdf16009a2",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49c8630e-191f-55d8-9d05-4a0915a7d054",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32fe81c9-9dc6-5a10-bb5d-fc0fb2e974f7",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:386091c2-4fd9-5269-92d4-190d36cfc4d2",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a163caa-edf0-5cb3-8fb0-a61cddb5434a",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:443b8f8d-a858-53f5-94cf-cfeec0a9a50d",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4939c7e9-f578-5e3d-bd14-00a23411e105",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41242 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b1dc1a4-b7b8-513b-8fd7-7c3b63ddae86",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4dc26d5-c8e0-5774-afb0-75db74fd24a4",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:944c5037-9dcf-5973-a29b-f902382217b6",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c40ba90e-c9c0-5ee4-b37b-ec9f3af94a85",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c51536e8-b0cc-5b38-b4fa-90a4ef6bbfa8",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e853e287-3752-522b-9348-8d19d52db3db",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22741 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d625244-3765-532f-8949-54c7b68fa091",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22745 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8e3d50e-d1e3-59e8-abf8-857159f4b1e3",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:009c72b8-57f2-5337-ad0f-48c1795b0057",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab0953a5-002f-57b0-8bd3-0e6e35096b34",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e73e902d-4938-5d9f-be65-dbd73e85afb0",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45080acc-60ca-5245-b504-06c9442700bf",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ddb2918-82a8-5312-84cb-4394b35f13a8",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:535580c0-2e69-57ee-848f-a55c046ef095",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0174923-ee70-52f9-92af-303b63a6971f",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b329f11a-0032-51ce-93ee-4f6b52a84862",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72310e78-0573-5d2e-a5cd-c148bcfc4324",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c1212e6-5d85-524f-84d2-16f5994e1c68",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0786569c-4095-52d8-a74b-fe8f55229182",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:340deb80-d562-5705-bc76-5c5f93f98f9b",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b28cf0d5-5aef-5a9e-bac2-3b8bd9565924",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4b074b2-b3dc-56fa-8a10-482dc21c5576",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20db169d-c005-5174-a862-6c4a73d670b9",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:648ad0c0-5a18-5029-acf3-0d16f7e24af4",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c9b43e5-c49b-5606-b8b2-9d1dd93c691d",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba9a117a-8530-5edc-8820-56d4aadbd9f1",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e4f1230-a16f-52bc-a3a0-5228ccd038a1",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:647abf81-e6d2-5d2d-9725-c12f33ae2080",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0b22134-0a56-5565-9981-e1a205095cf1",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4baa144-6cf0-58d2-8fca-47e10c5a13ac",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d028c8f-032d-51b8-9e36-184f28199401",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b7d8ccd-ddaa-5ed8-ab36-67b48cfa3606",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5866459f-fdfe-5f05-b99a-8a0d5047d60f",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6ebaf99-a04d-5fc4-9276-df19ad49822b",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc78a503-ac1e-50bf-a4d7-74afd20d488a",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 6.0.16-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.1"
    }
  ]
}