{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ac97132f-55a1-5cd7-a941-ef1fc2d5bc4e",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-aop",
      "purl": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11",
      "version": "5.3.30-tuxcare.11",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2016-1000027",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:4f44cf5e-fd40-51e9-9860-d9ffe64057f4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.30-tuxcare.11 of org.springframework:spring-aop and will not be fixed. It is not a patchable flaw but an inherent risk of Java serialization. It is recommended not exposing HTTP Invoker endpoints to untrusted clients; if such exposure is absent, no further action is required",
        "response": [
          "will_not_fix"
        ]
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:b134ef81-502b-5534-8f04-7516123dac7d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:8944a186-4a04-5284-a282-cebf70798a6e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:b1c92911-5ca8-52ea-9e7f-7da86614a90c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38808",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:df1239b7-9401-5538-b18f-8e41b3c8ca13",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:33535647-7940-5a9a-b47e-fb41f52b4b8e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:88ed27f3-edc1-5783-8544-4528c0fbfcc1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:3dc17723-da84-51c8-a514-6452f9cac350",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:772bcb1c-3ff7-5c96-9b99-0c3a612d9922",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2024-38828",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:1cdd7b69-a3ff-5401-93d9-aea4a8404178",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:bb3b01bb-7378-553d-9bec-109198b3c49e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:064062fa-dc7a-5372-8950-fd9b3ba712c3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:45bbcf21-cf1c-5aeb-9f8e-0688ecd9e694",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:52ec2fa3-31dd-5fe2-bfb7-a8603089e093",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:f83cfcb4-1ca4-5e89-94b5-719db4926ca7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:e520b8ed-2233-5361-87ce-fdc24d2a6eed",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:97e01707-3bb2-57a7-8da3-ec4ea129a5d9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:5834516d-e245-5dea-b893-627992480dfb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:0cc3dc5a-ae2e-5d28-8cb2-cc3bf1bc0de3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:7dbdf96e-ea63-58cf-b5c0-2e9e059de1b1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:ef61d1f2-ab57-5c9f-aa3f-7fa72f79f375",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:4f6b8f19-95ad-56fb-9d18-2372f0f9848d",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.30-tuxcare.11 of org.springframework:spring-aop. already_fixed \u2014 The target repository Spring Framework 5.3.30-tuxcare.3 already contains both fixes for CVE-2026-41840. The identical patches were previously backported by TuxCare as part of CVE-2026-22740 (commits 1a619adbfb and ee9443b0bc, merged May 2026). Both doOnDiscard handlers are present in the current code: PartGenerator.java releases data buffers on discard, and MultipartHttpMessageReader.java delet...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:44bec101-3e18-564b-a6f0-2906265441a5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:1ecdd464-f448-532d-a2dd-e11100046b8b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:43b14f04-db5e-58cf-ad63-28dbc1bd4d4a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:39b1e42e-b5d5-5f00-a61d-55018bb166b5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:c1513c61-85cd-594f-92e7-949101377bf8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:784aefcf-582f-5b82-9393-a5cb09bf22f6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41847",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:4ea0c473-292c-56d4-bbfc-f7a876d368ab",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:b7db4c61-4400-57c4-99d4-2183af93a1c3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41849",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d1ae67a5-0559-581c-b2af-5e5b94cfbdc7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:fdd6d984-fbe9-53d2-a2ac-59b5e447939e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:fe305519-9bd0-5e9b-938d-5432c8ccd691",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41851 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:641ac55a-c0fc-53ed-9b4c-747cd5d4b78d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:6a6eaf52-063e-52d1-8e40-18e84939020a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:1082a1c7-e55e-5979-8438-d059ddc36f76",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d0a8a3fa-c5c6-5154-9f34-a0fa8e8cd3f7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:e20fc883-9abb-5f66-8520-2d010d9d19d0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:e634325d-e1d4-5a0e-a7bb-d44bd9900678",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:c84bb1e6-cbae-51af-8914-3d73c0b81224",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d52828de-c365-5b0d-a0d4-cf83fe5b761a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d433964a-bdbd-5237-913b-7727e9a4e373",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d5751958-d30b-525d-81e7-20eb2cfb2a3b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:77b73f07-2830-564d-bc81-b923f8ad23d6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d1867d29-f6d3-5a6b-88ae-caec407d9572",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:f477c7b7-ace1-5d7c-a92f-0d45776b996a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:2d0d72c9-f6aa-5b8e-ad61-2f431218700d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:e60eb12b-4900-53d7-bd03-2c6f6d350678",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:898b1c81-72aa-5860-8e75-ef4f185fb676",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:fb3c3c0c-dc23-55d9-9e49-1ed96aafcc03",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-aop."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-aop@5.3.30-tuxcare.11"
    }
  ]
}