{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c8d305af-be59-5966-9b58-01b294a7979d",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8",
      "type": "library",
      "group": "org.springframework.boot",
      "name": "spring-boot-starter-data-redis",
      "version": "2.6.15-tuxcare.8",
      "purl": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:cfb99f07-4bbe-5864-9a24-9ec86c6e29aa",
      "id": "CVE-2023-34055",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34055 is fixed in version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83e1e52a-1933-5b49-a033-ad7e71e09451",
      "id": "CVE-2024-38807",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38807 affects version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c07523cf-b0bb-5460-8b3c-503f09ab47ce",
      "id": "CVE-2025-22235",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22235 is fixed in version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0446006f-0f63-5300-8d8d-eedd4ac4338c",
      "id": "CVE-2026-22733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22733 affects version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ac08462-522e-5366-90d4-72f9e2cf78b5",
      "id": "CVE-2026-40972",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40972 affects version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ee9a609-0666-55c6-adc6-68f31a44756c",
      "id": "CVE-2026-40973",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40973 affects version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:492ae396-0439-5363-a214-29a52572107a",
      "id": "CVE-2026-40974",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40974 affects version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:740f3ce1-855b-5b16-82f1-ee2bee728422",
      "id": "CVE-2026-40975",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40975 affects version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b49349c3-1be7-5180-a7f0-1c975cc59535",
      "id": "CVE-2026-40977",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40977 affects version 2.6.15-tuxcare.8 of org.springframework.boot:spring-boot-starter-data-redis."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework.boot/spring-boot-starter-data-redis@2.6.15-tuxcare.8"
    }
  ]
}