{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:47ae00bf-c68a-53c8-b551-31e0399b1552",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1",
      "type": "library",
      "group": "org.apache.cxf.services.wsn",
      "name": "cxf-services-wsn",
      "version": "3.5.11-tuxcare.1",
      "purl": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d386e165-6057-5129-bbb0-8ca70f11e3df",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ed9bc4f-ecce-56a7-90b2-dfc78245fa21",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a52540f-f86b-55ca-baed-4c35d872fb34",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4d4f067-7b5f-5749-85d1-44e0c24f6737",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43d1228d-b07c-5189-918e-f8f7eeb73509",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:525a9493-86e4-5c97-8bc2-56ea4b061332",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ccf9382-133a-5b0b-98d4-983dbdc2c5ad",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3a0b0aa-73b6-5561-a0f8-5948a5c83570",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3d9592a-08c5-5916-bb34-3944420955b6",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17dcbfaf-4161-51ef-8abe-eafc8d4b25e8",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2fbb7d8-84ae-5553-a3bc-16a8833013f5",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3cb91b7-c662-5e8d-943d-4fbbc896fbd9",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d37053f-a2a7-53ed-a5f7-7b3a79db7616",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00e24331-01b8-5ce3-ab85-56b4e6b35078",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e23310bd-4a5a-5736-b054-33241648afa5",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94ef1725-11c6-57b5-bf3e-701e9afc26da",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:966407dd-956b-53c2-a5f5-0c3f592cae61",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:698053d0-c43a-5e1f-8d46-003b11f12ad0",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2926dbbc-ad47-539c-b610-169204a43965",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:701ca193-1570-5062-8c46-f5f71721d2ad",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80d67dab-bbe8-5682-b25a-a92fea62c5b0",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec1dd804-20d8-5dbc-889c-6481ddb868db",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4bfa725-5c8d-51b5-990e-a7bdfbfb30d9",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3c85941-9d00-5350-a418-0124c526fad9",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d77b2135-f083-5ad0-a8dc-88b534596713",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:722c48b8-f9e5-5f8b-a9e3-210c82136302",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf.services.wsn:cxf-services-wsn 3.5.11-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2a80d86-1c67-5e39-af65-f15be5039de2",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f523b515-a2c0-52ff-8c2b-2d4d19b87668",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf.services.wsn:cxf-services-wsn 3.5.11-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72a81266-bd59-5ae2-b8ba-7885df17540b",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2420cc14-035c-5759-872b-a5407c3fd188",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf.services.wsn:cxf-services-wsn 3.5.11-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc1d8148-62fe-5b66-a8e5-ec69a1d6e46b",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:265c254f-fe33-5da1-b976-1fc302ac9adf",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.1 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.11-tuxcare.1"
    }
  ]
}