{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:77511e60-528a-58e2-98c9-b7523645e1df",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-aop",
      "purl": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9",
      "version": "5.3.24-tuxcare.9",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2016-1000027",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:56342786-8420-5499-bb38-a40cb52b87b6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.24-tuxcare.9 of org.springframework:spring-aop and will not be fixed. It is not a patchable flaw but an inherent risk of Java serialization. It is recommended not exposing HTTP Invoker endpoints to untrusted clients; if such exposure is absent, no further action is required",
        "response": [
          "will_not_fix"
        ]
      }
    },
    {
      "id": "CVE-2023-20860",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:0c2c0bba-51c9-5d76-8026-37912681c961",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20860 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2023-20861",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:67efd9b2-eba4-5e76-a372-caa2fd610887",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20861 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2023-20863",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:2ef28c51-85a5-53f7-832d-1e141c580f2d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-20863 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:503b3335-1120-5404-ba51-3700beb264d1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:68f53f8b-db8b-5699-8a7f-f8e1bcf26835",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:cc59de29-0114-528d-8263-e49937c7163d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38808",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:54ed2214-7b9a-5d20-be49-c81004d0f2d2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:8cd2257d-706d-5d81-a10a-0af17f009c39",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:0bbbd47d-4059-5570-aeab-5079cf67f93d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:d288c312-ad57-50d5-b2de-7f8f98421b13",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:30f15faf-f933-538d-acaa-5cbdca0ef054",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38828",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:f2fe74d6-4946-5a0b-940e-2b6f2f6b77b0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:329e9bfb-a117-5113-91dd-daa03ba30386",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:17614705-0cff-5907-82ba-a443412bfca0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:b6a3e604-8bfc-58b6-9f5e-f8528698dda5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:f32cefab-44bd-5808-88e8-6c98aa350bab",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:0173e31a-8e1f-5ec0-94be-4d8ef95998da",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:431cd301-d18f-5ff2-a776-a842c19f2364",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:72b2a281-9f87-5c4b-94a6-389374750d39",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:f3176198-f46b-58a1-8591-f4230a1fcaef",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:466a44a4-f0d1-56f8-8175-2c2a0b24966a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:9e95ee35-b152-5a9b-a798-10a555603902",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:22a61b4c-bdc4-5fe5-86c3-860caf53f3fb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:733aacda-52aa-502a-9258-7a3e42becd85",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.24-tuxcare.9 of org.springframework:spring-aop. Patches already applied: 7052da453285658215efc1dd5ecb0d472fde2de1 (already in target via 2c11852775 'Backport CVE-2026-22740 to 5.3.24')",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:94459e41-42ef-57d7-a3cf-27f6fbd25c39",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:6a7266a9-361a-50e6-968b-16a5a457935f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:27a4c72d-f007-52e7-8f1a-0110e72cd737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:c5ada706-6cc3-5a85-949a-726a3380fc4a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:21488592-7864-5de0-8352-d87405ead1e2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:66627868-9ecc-5104-94f6-e739ae5fe9a0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41847",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:1925ca29-8a9c-5fa3-9d8a-11b68ba1c19a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:5fa81dff-71ff-5be1-9fc2-87967827f8e1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41849",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:a6d5b7cf-0eed-550d-bc99-92838e074574",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:5344caff-943a-54f6-9a01-78c007c62780",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:89376200-f1c3-5fef-bf7b-dfc17732efee",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:30eceec4-febb-5862-974f-e4dbe579aca9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:7e011c71-f674-5bc9-9d5d-5facf55e69cf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:71863723-78e4-5eff-abce-0765016d091a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:1587ae82-1327-5a98-aee6-284be44f26f4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:cfe31034-59f7-566f-a10b-3e9146089952",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:172f02c8-f75c-54cd-a3dc-3e70fcc82e55",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:d2ba5546-ef61-5f03-993f-81381ffce272",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:e6a6c43e-3caa-5aa3-9f5f-6f843ee61fbf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:984fd138-c120-5030-88e4-8e3891879ad3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:e799aafa-26b5-5472-8594-efb4f0c97111",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:2d4b9e48-2317-53f0-9bce-c14a16cfd98e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:2117c843-9779-52a8-9270-aee3faaaf17c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:5cf021fd-8073-5f9d-b294-b1c19318a5d8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:43b3bb9a-393f-5cb2-af9f-4a2ac2185533",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:805f3b13-58b0-5c06-aaca-1882986316a1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:4d43df59-faba-5e84-b509-68c28ef573ec",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
        }
      ],
      "bom-ref": "urn:uuid:310d4d30-7d63-55eb-8af3-4a1650634c77",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 5.3.24-tuxcare.9 of org.springframework:spring-aop."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@5.3.24-tuxcare.9"
    }
  ]
}