Enrich https://api.spring.io/projects/spring-security/generations with the latest patch version available (no matter if it is spring enterprise or OSS). Do indicate if it's spring enterprise or oss in result. If current api cannot be changes, add a new api.
Otherwise, the calculation of the patch version that needs to be applied (in the Hub side) becomes complex because they need to check the latest fix on any CVE of that library