{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7f5b5580-3a5d-582c-94ba-22dc4ee1fbb6",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-aop",
      "purl": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5",
      "version": "6.0.12-tuxcare.5",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2023-34053",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1851b11b-5fc0-5cdd-af5e-07cc78253593",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34053 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:22539f9b-d222-5a78-b8bb-26dca6bd3675",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:868fd6d1-2940-59be-bd65-d9cea1d6201f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22259 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:00563d50-8ee1-57bd-86bd-84dce5a1deab",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22262 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:77a83dc0-8b13-5277-ad22-a813c4774c5e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:13b7a6fa-4d44-5771-8ecb-819482e9ec6a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:cec59f65-209a-56ee-bd15-add065e15912",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:35c8dfaf-0b81-51f1-ad27-ce31f79fb325",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38820 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f5ecd1c1-8f50-5c95-a045-9d0811b4b03c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22233 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:654d3e96-9cea-5a6a-b5f0-9d4935225ca9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0880e7b6-17c5-5cea-9de2-ca4317c814ca",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:cf3c32b7-3dd8-5395-bb79-f6a75b314994",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:8e6e725d-3bc3-5de7-bc18-a1fa880df998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:50efc11e-3d0c-56c3-b4e8-57508d556056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:1382edc9-f332-544b-9bb8-6a6506e1fcb1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:77043023-20b0-5b26-b7eb-cee403d07ae9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:22024f5f-b947-5d9c-9c7b-6e13847a4dd6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0e9929d1-cf02-59e7-81f8-bc2b9b614f32",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:c3750c4d-8dac-5255-a1c4-9b7e9c749e75",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:af08075f-1525-5d5b-a37b-5a3d68399591",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41839 does not affect version 6.0.12-tuxcare.5 of org.springframework:spring-aop. Current version of spring-framework is not affected by CVE-2026-41839 according to the vendor - https://spring.io/security/cve-2026-41839",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:3e493833-eb3d-5b8b-8545-72cb6d9db829",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f4a84833-4394-5f9b-9e5c-48b41946384a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:2413c96e-a365-5868-bf15-803b94b60dda",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:bff376e2-4bb8-5c4a-bf2e-8b33c601e3a0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:41be2b69-1b11-514b-9964-1fcb1bf2368f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:62b17416-c18b-59e7-b371-18cc3611e516",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f50b9137-d527-5f37-babc-d485a8e9c1ac",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:94487fac-341f-5595-b91a-59264c42e731",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:22373dc4-2e4f-5cc3-93f2-be7991496d8a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:3d9380ee-503f-555c-921e-c0d0f0ca2890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:28d5a299-d90e-541d-80ba-0913c28d4d6f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:29891ea3-ac35-5d2e-af55-36e68a34f32f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:71896b53-75ba-57f6-b45b-8b333b7994aa",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:8053d0c1-55c9-5d11-91e3-c64debfd4c95",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:6da9f8c6-66b8-584f-a0fd-fffe05bc1f06",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:cf366321-b32e-5057-92a9-dd3da0c93b10",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:bfb67cea-23f3-5749-9589-abc5769ad2c6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f4c976a4-2062-5867-aeca-77fe9e848ea9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:78a2780f-e7c3-57dc-a675-0491d6a6bf83",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:55d54b6b-4748-5419-8289-ab1c44694f05",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:cdbb26e2-b0c3-5772-9d6a-cb21b2dc35d9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:452cb93e-7723-5ca0-bbf8-658488fac012",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a6484831-b5f4-5e80-90c2-4089f9db724b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:9f912365-0fec-5793-bbee-84158fc0a08f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a0c3d4f1-0d17-5a0d-a7d9-7a88a8cdd8d4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:c4a70266-42ec-58e7-a441-7e0f7f38f471",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:00ebf2ef-cb89-55bd-b354-19ee3db8b14a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.0.12-tuxcare.5 of org.springframework:spring-aop."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@6.0.12-tuxcare.5"
    }
  ]
}