{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f21931fb-30ee-5566-bcc1-dc4fb5d47a5d",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-integration-webflux",
      "purl": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1",
      "type": "library",
      "group": "org.springframework.integration",
      "bom-ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1",
      "version": "6.4.9-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2026-40987",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:58c21c84-606a-5d98-9b50-51d6000c3fe2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40987 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-47856",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a69d8101-d4d9-5540-9aff-0858529361d6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47856 is fixed in version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-47859",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2ec1e74e-1a04-5f7d-ae98-5386266a09dd",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47859 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-47861",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:3f60cdeb-d60e-5f59-a9e8-4d12aeeee67c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47861 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-47862",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a18dd91a-a524-5b9b-bc19-75bb2a18a2f3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47862 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-47864",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ceb97e0b-6a45-54ae-887b-26c2b227a38d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47864 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-47880",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:af469e38-586f-5fc5-a7d1-0223b32a64c9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47880 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-59274",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a74264d8-dc44-57ce-8aab-8df8764203c6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59274 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-59292",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cc3e864c-0a58-5be3-a329-4ccbb9fd7e37",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59292 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-59293",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:32ddc0dd-d4ef-5560-8abf-963466fc006a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59293 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-59307",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d602c9e0-24a0-5535-a5ae-2db172cea399",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59307 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-59311",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2f41e4f5-aaba-5eff-816c-34609d268a61",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59311 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-59321",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:1d44e927-74f3-52f2-9294-98eb49ba2db6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59321 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-59322",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c3e82124-e512-54e9-96d0-5c1af136d767",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59322 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    },
    {
      "id": "CVE-2026-59324",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d9ea9d42-98cb-565f-ac92-e9894e89f5f4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59324 affects version 6.4.9-tuxcare.1 of org.springframework.integration:spring-integration-webflux."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework.integration/spring-integration-webflux@6.4.9-tuxcare.1"
    }
  ]
}