{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:92abfcae-2ffb-593d-96aa-082403f77702",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-websocket",
      "version": "6.0.16-tuxcare.4",
      "purl": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:50ea8a8e-d47c-5bbb-86c8-6c6021c4a981",
      "id": "CVE-2024-22243",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f67c0b2b-0cb4-5668-adcc-49c062477cfa",
      "id": "CVE-2024-22259",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:174404cb-c7ac-5348-8798-03c29013c770",
      "id": "CVE-2024-22262",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61947463-5663-57fd-88d9-12f0197bb016",
      "id": "CVE-2024-38809",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:001dab15-40ec-5f2c-b57c-f5f71267b429",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c9e3e71-7b8e-577f-91e0-1756f5a50094",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b0c1f46-74b4-5e54-9c0a-df44ea82594e",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a95c2d65-a93f-5925-b0e2-812b455ef205",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e7ba1cb-845c-5f78-93cc-a13879716fe4",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6550803c-a92c-5a39-9235-f5dc8c9c5b28",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2077a5ab-2780-5498-a931-79205d5381eb",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f45bce4-481d-51fe-aeeb-75a47423bc38",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a81d80cf-afe3-53fe-8816-340efe807be4",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26fde5ac-75d5-59ac-9050-4e841e891c40",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb8959e3-7521-582c-b58c-100374a64364",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a2aaf4e-a656-522f-bdef-821c5279997f",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48bdb7e7-5b2e-5cb6-9ec4-84bc07e203b5",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20ce40d3-816e-56fb-8852-c14d9f7edcae",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f2563e1-885c-5f8f-a7b0-6d8545db149a",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:656e6ffb-8f68-5189-ba88-4c77c423b271",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cd3f810-0bf2-5ad9-990e-f31b369f940f",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93610a46-ec7a-5222-aa20-b945f1ae6504",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b150016-0e34-5628-8c64-da052ca64768",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be3c6060-2199-5e09-96de-8093b6704e7e",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3883e85-67ab-5515-95f0-7334f2914cea",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46901e42-0918-55d9-abcc-702a3f9dff72",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:576516b1-ffe4-5f0a-86e7-77c4d68b6a6f",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:226c98ad-45d7-5f51-afce-a7be024fb642",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77f3dd25-2c5f-52f3-8b9e-aca4e2068381",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22b8f0a3-76a2-5055-bc47-6d74f4f5931e",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:864bbd1a-3e8d-591e-beab-c764371f58d8",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.16-tuxcare.4 of org.springframework:spring-websocket."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-websocket@6.0.16-tuxcare.4"
    }
  ]
}