{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:596bfa3f-d2ff-5d5d-9e91-42929e2dae3e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-expression",
      "version": "6.2.15-tuxcare.2",
      "purl": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:0b64802f-bf27-5ba4-8119-286867232e69",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:546cadaf-2c6d-502a-a261-f793ed5cf3fe",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fee20139-cde1-5744-aa00-912cbf35f5d7",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22740 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bd33aec-e8b2-56dc-8711-b29cea9a9762",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fe1de50-0bbe-57cb-af1d-c4763c186fe8",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96d2bcb0-ca7e-5ac7-a98f-07a8b81133f4",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a511f07-9063-5713-8d58-a7769675a305",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed0bf84b-9fa2-53a0-8a42-c4360b5e3328",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e71d61af-cd3b-5c4d-9e2a-38ccfe38348d",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb0bc3cf-1979-5ab5-bc29-fce719f14beb",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a5ea49c-5dbd-5eec-a652-b61277745042",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:313f83d1-b63d-5af5-84c6-4bd91b806400",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6dce5bb9-85b0-53df-915a-dcfcd305823a",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3eb4c39-b4ca-597e-89cd-59ff4ba044a9",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eddb989f-095b-59f1-b4a7-24ba085e0b11",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f920f1c9-7921-5138-9feb-8d594fd7797b",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67e1fbfb-3bfb-5a6c-961c-2750d178f187",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92a53fb6-b9e3-5185-bf3b-d2947930c01d",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4202b66c-4a58-5fe0-a186-f6ccb26c8af2",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.2.15-tuxcare.2 of org.springframework:spring-expression."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-expression@6.2.15-tuxcare.2"
    }
  ]
}