{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:fc846d47-96cd-54da-b732-d17e2670976b",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "6.0.23-tuxcare.1",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:c557fe13-b88d-51be-9b31-1a1efedf5f8e",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38816 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:499eb08d-767c-55c5-9df6-e852ed68e324",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:adc30a50-69a6-52f3-96b3-eb21d5d97572",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7be1f7a-ffdd-5a52-9884-c99dfece0e29",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e0358d5-688e-5679-9590-6a929f589028",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:095fe9e5-0edf-5427-a820-74e5bde5e0e6",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41242 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4bfd44a9-5273-5414-b645-4430f1add59b",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4067ca88-8c7f-5aea-bbb0-c842e078b38c",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72681855-1874-58e5-8a20-deb5b613fe08",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22735 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b29bb7a-73bb-553f-9b63-7fe340758fd9",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3dbde277-c1bb-54dc-8c86-fab8b45a73f6",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9973556b-c38a-5a85-9952-e7b5f8319086",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22741 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9864c4aa-93ae-536d-98aa-5e0b4467a6d6",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22745 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4b39046-3ff0-5b0e-b195-13b8167f6f0b",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4742c8e3-4e35-5331-851e-1692774cc690",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1eb615dd-43aa-52a4-ac53-e1398255f1dd",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df0a501e-6059-5b4d-9a4f-d110128927f4",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b9455c8-b64a-537e-b765-0e4d7d9e9f3b",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c391e170-ca92-5405-9624-64e3f9ee9220",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1dc3fec-7ddd-558c-8b36-72f43c9d1222",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70004fe3-8365-5f8d-98ae-c70700885571",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c932f56c-aec0-53f1-b370-bf5347e806cd",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c547cb2-d682-537f-b3c5-7d918350fce5",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05a3624c-e24b-5bab-a4c9-59b5caf45bc2",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66b57f62-4bc1-5b15-979e-f8e2cbc9ae3c",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5a8bba6-ef01-53b9-9061-c516f3361c6e",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1b0162f-1a2d-5e32-9af9-5f96fc71abe2",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d238930-d466-5fdf-93af-017493cf5c8a",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0801ac6-a17c-54b5-bac8-d746d461412b",
      "id": "CVE-2026-47884",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47884 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:50bc50c0-033c-5431-bc23-3e30e22b45a3",
      "id": "CVE-2026-47886",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47886 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a271f9a-97ee-56a6-b9a4-f3031704552f",
      "id": "CVE-2026-47887",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47887 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3c6619e-4736-5721-b1aa-a4574e0ab1d8",
      "id": "CVE-2026-47888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47888 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12f60e5f-333c-5ce7-892d-b0655ecbbfd3",
      "id": "CVE-2026-47891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47891 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7a9ff11-3524-5235-a49c-c38bf4faad7e",
      "id": "CVE-2026-47892",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47892 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e95d661-e509-5f89-9199-74846b846e83",
      "id": "CVE-2026-47893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47893 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b55cf2a-cbaa-585a-b837-a5f2d54d1129",
      "id": "CVE-2026-59280",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59280 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17cd547a-5583-50a4-a33a-67127044e174",
      "id": "CVE-2026-59281",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59281 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4617416b-0502-5516-9888-27989699f6a6",
      "id": "CVE-2026-59282",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59282 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:398a1b95-2c2e-5ebc-a866-7fefe843980b",
      "id": "CVE-2026-59283",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59283 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:225d8a2c-609b-5416-b605-513c79f64790",
      "id": "CVE-2026-59313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59313 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54aa44dc-1302-5006-bd10-40c2578117a8",
      "id": "CVE-2026-59314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59314 affects version 6.0.23-tuxcare.1 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.0.23-tuxcare.1"
    }
  ]
}