{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c6c7c09e-557a-58c2-8b2b-aac2782f07ef",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4",
      "type": "library",
      "group": "org.apache.cxf.services.ws-discovery",
      "name": "cxf-services-ws-discovery-service",
      "version": "3.5.11-tuxcare.4",
      "purl": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5d93fad2-6171-50a0-9b5b-fde6421049f7",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9c5e8e5-f75a-5b8d-86d6-c4a102d46118",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a93043e9-c443-5733-b2fd-d0aaeb72e90f",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e4353de-c74e-53a9-82fd-e45baf572c0e",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9186971a-dbd7-55e2-a65c-1a76dd0f9147",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ac180af-bfa2-5f08-983a-e86803c58bcf",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fde8a647-5ff9-5a45-950d-e6bf64749536",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8dc99c71-274a-5ce9-b6a8-b6ee311d7423",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f396e2e-79ab-52f6-8523-947dff4be9f9",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f3ae159-1191-5fe9-b4ba-81736b807e15",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68188eb4-3e70-5280-a7cd-3971b94f73be",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed553d47-572b-527e-be43-1ece19115daf",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a591d88e-1aab-58b7-b14d-eec26f350926",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3283dc7c-81c6-52e3-aac5-4b3c085aa5ba",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:649d5e35-cfe5-5759-a620-68c09da2df3e",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6218b34-eb54-5eab-a15f-5fd3b8c9d79f",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1966502-1032-541c-92eb-d1d7ad970c3e",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5dabffa8-ae20-5b15-90d8-ac06bca7bd16",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2aa1f218-2021-5eaf-9c08-a5eb5a9be770",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4e1d83e-18fe-5aae-9de1-485b5a592665",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5e5d53e-fd8c-52d0-adba-35923d4512ca",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:821284f1-5f0e-5944-97c6-c3e10f801f81",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c36b1864-3aea-54c6-b00b-264dd7745f95",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:802d188a-db99-5bbe-ad5b-26ef403f6e4c",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ba59a5f-12aa-547b-9634-a450d3067131",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d72e77e4-4c2a-54e0-a093-17f6862b19bb",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service 3.5.11-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a92ea34-152b-57c1-b6c2-5e0febe49b89",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a62b5fbf-2ff4-588e-ab70-b698901aaa3c",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service 3.5.11-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbb1cb73-d90f-5eff-b125-ee34029f9c96",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6ad684f-127f-568c-b316-a8963265ac7e",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service 3.5.11-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8987de14-e385-522c-b5f0-748e05f88f03",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf2264ee-60d0-50b0-a77d-39178f1d71c4",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.4 of org.apache.cxf.services.ws-discovery:cxf-services-ws-discovery-service."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf.services.ws-discovery/cxf-services-ws-discovery-service@3.5.11-tuxcare.4"
    }
  ]
}