{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:88f7ffec-474e-505d-b8b0-c35a1b910c05",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5",
      "type": "library",
      "group": "org.springframework.boot",
      "name": "spring-boot-starter-data-redis-reactive",
      "version": "2.7.16-tuxcare.5",
      "purl": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:9952f508-4b8c-5583-965c-91525f563f0e",
      "id": "CVE-2023-34055",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34055 is fixed in version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abcb6075-87ba-5f0b-bfc5-66a2ed69b678",
      "id": "CVE-2023-38286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-38286 affects version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e7f7342-85e5-5b8d-aaf1-290b44df41c0",
      "id": "CVE-2024-38807",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38807 is fixed in version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11f7db25-d4a2-5a83-a5b6-9529b85f90f2",
      "id": "CVE-2025-22235",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22235 is fixed in version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5bc17bed-c6af-597e-a394-2e5996a1c464",
      "id": "CVE-2026-22733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22733 is fixed in version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5d4b12a-fca3-5984-8b50-f833da94fed6",
      "id": "CVE-2026-40972",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40972 is fixed in version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e3a83da-523c-5a2c-846a-efee5de621fe",
      "id": "CVE-2026-40973",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40973 is fixed in version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c7e341d-523a-5f7b-94ab-16cd0887b343",
      "id": "CVE-2026-40974",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40974 affects version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed8b049c-d22e-5453-95b8-93f6b6359256",
      "id": "CVE-2026-40975",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40975 is fixed in version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f00ca46-9f20-5c34-823e-82740d9069f7",
      "id": "CVE-2026-40977",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-40977 is fixed in version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91f82bb9-3c8b-5ad9-b923-43f828a060ba",
      "id": "CVE-2026-40992",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40992 affects version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cea96fd3-eb6c-595c-bc89-7d7f6faaeda4",
      "id": "CVE-2026-41001",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41001 affects version 2.7.16-tuxcare.5 of org.springframework.boot:spring-boot-starter-data-redis-reactive."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis-reactive@2.7.16-tuxcare.5"
    }
  ]
}