{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:85540c3f-9a7c-5edf-aade-95ece7b50f8d",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-jcl",
      "purl": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15",
      "version": "5.3.31-tuxcare.15",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2016-1000027",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:bd31be72-287d-5ac9-97a0-fec078f245ea",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.31-tuxcare.15 of org.springframework:spring-jcl and will not be fixed. It is not a patchable flaw but an inherent risk of Java serialization. It is recommended not exposing HTTP Invoker endpoints to untrusted clients; if such exposure is absent, no further action is required",
        "response": [
          "will_not_fix"
        ]
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:0f7b9fc6-b8c7-5505-b518-d57f8ecf9272",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:6dbad50f-9290-5521-8e39-fd6ff9e13c59",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:8991adc5-6697-5770-9aaf-9ed739973962",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38808",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:89321784-a4ab-5e53-a581-d514f3cbc651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:a1a81118-b341-5d1f-b4d0-0181b9924be5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:f0c814ad-3858-5268-ba64-17f3cc1ad264",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:cae6888b-ba3b-59bd-a76d-ad435ab2e7ae",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:37b2f560-0b9e-5f57-ac3b-f52be1fc7b61",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38828",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:61b5af7f-ae4a-521a-a1b2-90681a7c3c91",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:c749ab25-2089-5bfb-b0f2-01e8518d1e4d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2025-41234",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:e4375d1a-457b-598d-a603-bace601d4591",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-41234 is a false positive for org.springframework:spring-jcl 5.3.31-tuxcare.15."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:1df87797-c597-50ce-bf60-e22696bb65d9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:ec7340d4-b9c5-5bb2-b314-88574fcb42c1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:4d1f070c-df55-54a7-a696-05648f62eda5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:d7810018-f2d6-5386-8046-6012a3df4788",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:676828a3-3051-500c-a6c9-778bdaec2f39",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:d4c9af92-0c04-5a03-a7d4-ee4c4f7722a1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:54e90302-30f6-51cd-a668-39ee6b8484bd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:e1be189e-0cdf-545f-bdeb-6806a129d2e6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:4bfacf02-c9e0-525b-aa52-35ccd72642ad",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:7c36e1f9-4712-59b5-ba82-90615e94f39f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:cd2bde3b-d6cd-54ed-854a-377693fc3521",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.31-tuxcare.15 of org.springframework:spring-jcl. already_fixed \u2014 The target repository (Spring Framework 5.3.31-tuxcare.3) already contains the complete fix for CVE-2026-41840. Both required doOnDiscard handlers were applied via commit 615477c88f (labeled as CVE-2026-22740 backport) merged on May 4, 2026. The code changes are byte-for-byte identical to the upstream patches.",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:f493ad0d-7eea-5a7a-a1c1-8b1c08cd5349",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:d87c6987-37c4-58e9-9eab-1b3ce0cb409c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:3ab7498d-8129-52e2-af25-38c0a5f963ad",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:2043cc0e-e8ae-51be-9d7f-ea5f23b833e3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:1327a014-7a5c-558b-9e73-6036ec1da4ad",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:de77b23e-aeb5-5bce-844a-6a6ae4d9d55f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41847",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:d296ae25-a2f6-5d73-bbb2-88c7685f90f7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:5db67e6f-2c0d-53e9-8b54-88ce31c0d671",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41849",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:336f7b1c-3c4c-51ae-9c66-260d7939f7c7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:72a3b280-307c-5684-855a-8df6b1137661",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:b4b77beb-c8d0-5816-a645-e4c3c338c9ef",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41851 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:fde4700d-cb53-5dbb-975a-647c3d08b85b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:4c44473a-8551-564c-9dee-f879ed5db3bb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:e53c4c94-de43-58be-aae5-61e56ef41594",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:d52623a9-16c5-5473-8da2-14add9c09641",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:458c3641-22af-5ed5-acba-c9fe3df423b6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:f76b67e2-24f8-5ab3-bdd6-b2e8877dc225",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:cd45cd5c-ac1a-5373-a967-7cd129d637cf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:f14f0a33-3b1e-5d44-b533-9798e2cbc415",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:b543762d-5a0f-5ad5-8783-dc49f336de94",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:2e815708-54f5-5bf6-8e92-b0b5ab130c98",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:27f249f7-0ba9-5c71-8302-570953d8b985",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:0a23d802-ed8b-502a-8236-d1ef8f64d9ee",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:48b295c5-1e19-535d-8776-4719e78ad42b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:f21840e9-95dc-59cc-b09e-e91744d4cce0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:aade840b-5402-52b5-8a56-a80d162a8d02",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:f5583ef7-10dc-5018-83b7-36ec84e81ee3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
        }
      ],
      "bom-ref": "urn:uuid:953a989a-87db-5e08-b0c4-c2130a1d014a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 5.3.31-tuxcare.15 of org.springframework:spring-jcl."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-jcl@5.3.31-tuxcare.15"
    }
  ]
}