{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3bed4b84-ddd8-54dc-977d-5b6c525658e3",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-jdbc",
      "purl": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13",
      "version": "6.1.21-tuxcare.13",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:d185ea82-61ec-581d-ae2f-0681977b26b5",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-22233 does not affect version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc. Version 6.1.21 is not affected by CVE-2025-22233: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: ee62701f5634e904e42e218baad142cea2bcd332\". No backport needed."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:27bf7948-97de-5744-b241-f6ccc07a1f1b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:b113d753-8d60-560a-b31b-5a10a4286ad2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:4c75bcfb-2b66-5699-97ab-c87a3d269200",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:b477c20c-2897-5055-9e2c-a7d4a8c95376",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:824a0479-f56f-51f7-ab91-abff32370cdc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:4bf4e115-27c9-5129-bceb-d6a3f3034384",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:f0033c5c-8bcb-5119-bac7-2ef73e91199d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:a9d6c488-13d6-5811-bf35-7d4856b4aadf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:38f68257-4eb9-5c54-ad81-30d19195bdd6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:3cb3a262-673c-5e8a-b254-fd92d9f64492",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:c52da5b2-9ce2-5c3c-983a-15f22a709af3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41840 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:d879eb69-dd9f-53b6-af4c-6ec477b90fdb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:33e41655-c248-51a9-a8a4-cf95fa57c032",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:b14b4a9b-84d8-5e65-b589-eaf59ed0a614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41843 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:f391372a-a54e-5ca9-825e-77b56030a1b5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:90ee0f3c-a619-539f-993f-b6526a59dfeb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:5c470f0f-dbfd-56ff-8d77-4598a0575888",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:ec4c4e46-3e22-5359-a74c-7dfa95b50497",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:1622bb53-a9fe-57fc-aaa4-69eae8b22e3e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:25b91f92-c74a-592c-a5d5-6c2920542b16",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:582759cf-7ff5-5b50-93f6-92b50161523d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:22a6be98-1bef-5f6d-8fce-7bd5f923eb80",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:377554f7-8006-58a5-a9d2-71d6c099fd4c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:aed1d6e8-f3a7-562a-a9db-d1fabd1e27b5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:b019e641-2eac-53e6-a726-35691234fde6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47885",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:f95eaecb-06a2-526a-93e7-08973383004e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47885 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:19aa0f57-d886-52c2-ac01-d6d7228f6304",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:4e607867-69b6-5ccd-b361-3e6ae1fe4be9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:735c1c46-190b-5c00-8914-222267944cf4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:ed1f97d4-fab5-558b-9777-88f8b9dfc4fe",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:768e1799-89f2-5eae-a4a1-b8304ba2a20b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:77c57fe2-34b5-54f5-a1a3-27b8027dcaaa",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:f8b1c104-c02e-599d-9075-32c16e4e8624",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:f349ed6a-8536-566a-96e8-7f6f8f441ef4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:e88506fa-486e-50d8-b670-3340daf0381a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:ae0bc282-26d3-5dec-9f70-47ea393aae28",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:f6a7f462-e0aa-50b4-bdaa-6508385db5d9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
        }
      ],
      "bom-ref": "urn:uuid:aa1103dd-cef0-54ed-9191-82fba15071ee",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 6.1.21-tuxcare.13 of org.springframework:spring-jdbc."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-jdbc@6.1.21-tuxcare.13"
    }
  ]
}