{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:eb9a765f-2286-50ec-bbf3-fd54a7571a33",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2",
      "type": "library",
      "group": "org.springframework.security",
      "name": "spring-security-oauth2-client",
      "version": "6.1.6-tuxcare.2",
      "purl": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:41a539a8-9781-53c2-82bf-3f473e86aad5",
      "id": "CVE-2024-22234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22234 is fixed in version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45a6f2b7-5b54-55b1-b1f6-96baae1218ad",
      "id": "CVE-2024-22257",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22257 is fixed in version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a7ac676-709b-5cc3-b434-3e8e8569c092",
      "id": "CVE-2024-38821",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38821 is fixed in version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d4cb8c5-3612-536d-950f-2db39c9e7eeb",
      "id": "CVE-2024-38827",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38827 is fixed in version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17d24ca4-59ed-5b54-aeb0-e3c051a819cf",
      "id": "CVE-2025-22228",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-22228 affects version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5cfcc7cf-c609-5046-b5b6-b58d98ad240b",
      "id": "CVE-2026-22732",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22732 is fixed in version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f27fcc5-5328-5f6f-b823-058016200417",
      "id": "CVE-2026-22746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22746 affects version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a6b686e-975a-54be-96bf-42becf2b66bd",
      "id": "CVE-2026-22747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22747 affects version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59c078f8-0235-5d3b-9f14-409519efab33",
      "id": "CVE-2026-22748",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22748 affects version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e69ea2b-32f2-524c-91c2-70347f879c11",
      "id": "CVE-2026-22753",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22753 affects version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49ee9c2e-591f-50a1-bfc2-9bd310dd9bd7",
      "id": "CVE-2026-22754",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22754 affects version 6.1.6-tuxcare.2 of org.springframework.security:spring-security-oauth2-client."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework.security/spring-security-oauth2-client@6.1.6-tuxcare.2"
    }
  ]
}