{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:5cf1ffdd-6211-5633-a549-4068a2691e94",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "spring-jcl",
      "purl": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11",
      "type": "library",
      "group": "org.springframework",
      "bom-ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11",
      "version": "5.3.30-tuxcare.11",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2016-1000027",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:8a7778a2-941b-59b1-8b75-e735ee511625",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-1000027 affects version 5.3.30-tuxcare.11 of org.springframework:spring-jcl and will not be fixed. It is not a patchable flaw but an inherent risk of Java serialization. It is recommended not exposing HTTP Invoker endpoints to untrusted clients; if such exposure is absent, no further action is required",
        "response": [
          "will_not_fix"
        ]
      }
    },
    {
      "id": "CVE-2024-22243",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:6313196e-d636-5549-bf3b-67eed50f6c76",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22243 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-22259",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:57b59efb-ebed-53cb-a598-895345b2970b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22259 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-22262",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:ec7516e9-dad3-5afb-a94e-b3812b9c0f36",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22262 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38808",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:89965eed-9692-5629-80c6-e887fe52bb44",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38808 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38809",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:f479471b-344b-5499-85b3-28ae456a1bab",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38809 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38816",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:18468c0c-920c-5887-905f-28718ac16df3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38816 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38819",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:0735aed2-74a7-5224-93bb-22f0fc7db781",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38820",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:4e664fa5-bd92-5264-a4a9-ab000ecbae5e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2024-38828",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:b3993d8e-8fac-51f1-8fab-bcbdab3477c5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38828 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2025-22233",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:6b05a8ab-fddc-56ef-8a9c-005a95ecb9d1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2025-41242",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:39b600f6-7b9c-5d13-84b0-e456fff9eee2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41242 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2025-41249",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:faad59c1-d2eb-53ea-8d47-08d658213ad6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41249 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2025-41254",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:02bc679c-b11e-5591-b6f7-943ed787051e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41254 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22735",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:20244470-3021-5656-8b1d-9d65255f7650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22737",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:15c9f4b8-80f0-57e4-a339-10cf00350066",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22737 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22740",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d0cd637d-0c9d-5e70-96be-6e71102284bc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22741",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:433cb98a-48c9-540e-9059-31f4df8786b1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-22745",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:a8d45ffa-3682-5f29-9e3f-3b779539bb1f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41838",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:78d8a54c-5e46-5219-ab80-530437eec92b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41838 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41839",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:97c339cf-048c-56d8-be62-697606d04a9e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41839 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41840",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:c0ce28aa-4328-5ea8-8824-0bab5ca889b0",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-41840 does not affect version 5.3.30-tuxcare.11 of org.springframework:spring-jcl. already_fixed \u2014 The target repository Spring Framework 5.3.30-tuxcare.3 already contains both fixes for CVE-2026-41840. The identical patches were previously backported by TuxCare as part of CVE-2026-22740 (commits 1a619adbfb and ee9443b0bc, merged May 2026). Both doOnDiscard handlers are present in the current code: PartGenerator.java releases data buffers on discard, and MultipartHttpMessageReader.java delet...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-41841",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:f5f67937-5afd-519c-9d59-c9190e15c038",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41841 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41842",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:aeb3f565-1aab-5a0e-a1fe-b0b1e0cbc28c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41842 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41843",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d2dd5852-4a9b-5596-a862-c4d92133dba7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41844",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:c531b1cf-68d0-59e5-ab93-e0a5a3416de8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41844 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41845",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d539f71c-da49-5aa2-b6be-116d5a5a7f82",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41845 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41846",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:b2c47fdb-2567-5322-a5f6-30a3cbbb85fc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41846 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41847",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:92541e41-2b54-5781-8b2f-24adc8c5c914",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41847 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41848",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:3e579d63-d01e-5116-8b90-1c174566e40a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41848 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41849",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:7e9a6697-0c7d-5be1-9e12-b7c31db4aa0b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41849 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41850",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:e1393374-23ca-521a-bade-0ce2d71a621c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41850 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41851",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:0b129ed1-eed7-540b-9196-1658f96c923c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41851 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41852",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:4b72d836-dd8d-53b2-8fcb-d7522d034f63",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41852 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41853",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:1adf7f3e-6738-5ff6-8bcd-8b74d5085961",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41853 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41854",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:cfcefff1-a892-559a-8139-467e9ae00065",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41854 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-41855",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:6862d3af-e04f-5754-bcdd-50ecf2103df8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41855 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47884",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:b0ef6ed7-b42f-5740-b082-6d0d08d3d003",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47884 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47886",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:39df0ab2-2210-5305-9d82-60b513de54e3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47886 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47887",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:f06d6769-a84c-5d87-9eca-972b8cba7e7d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47887 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47888",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:961b336b-e52a-5c1f-96d0-c6af34fb831b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47888 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47891",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:e35b1c79-2152-5877-b9c2-c2c85ef10194",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47891 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47892",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:24ee2f8e-7d99-5985-bb13-79883523c0e1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47892 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-47893",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:4a122853-cbee-5acf-8496-bb06352fecbb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-47893 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59280",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:b435ff38-a518-569a-8244-5f82b8b30fde",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59280 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59281",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:910cdfd1-87f8-5c67-8d47-0f4bd140d633",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59281 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59282",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:6059a024-2505-5530-8d83-b842eb54c567",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59282 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59283",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:b53cb767-c110-55cf-b856-51b2611c3a74",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59283 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59313",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:56aad575-f4f5-5131-9a26-a333ae6d0cd3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59313 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    },
    {
      "id": "CVE-2026-59314",
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:a93e8e43-ed51-5d1f-82d5-042394ecd5b7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59314 is fixed in version 5.3.30-tuxcare.11 of org.springframework:spring-jcl."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-jcl@5.3.30-tuxcare.11"
    }
  ]
}