{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2432bad8-220a-5ae3-a02a-c316a85b4be9",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3",
      "type": "library",
      "group": "org.apache.cxf.services.wsn",
      "name": "cxf-services-wsn",
      "version": "3.5.9-tuxcare.3",
      "purl": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:b3627b1b-5004-5e04-b6a0-a7e22e1ab211",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da9bc903-65de-5894-9158-07f5020d4805",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56235c3f-b8e1-5fdd-b93f-9d186098f5af",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5350d27c-f3e7-5502-88aa-202a118709a6",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d6b2ea6-da1b-5e60-82bb-8413d1abf626",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ae6854d-ad24-5086-a788-e5f797bf7256",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:606f7c06-e28f-5b57-97dd-0ced7d789e4d",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bea8ff85-8e6f-59ac-a8c9-1ad60115f07d",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a2261b9-4c9f-57d2-8e62-84ce4206c71a",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9faee1a1-3ace-5349-9a1e-7eb00ed96093",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c267493-52fa-52ec-a9f7-15512bdfbd9e",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90af079b-9229-5fd6-8337-7310b7fc3271",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6ae030d-8deb-550f-928b-c40eace80bae",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:edb44951-7dfe-5c70-a378-c8c7c0369ca6",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e06227c-2db3-5c93-8553-4c86e34b7ed6",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:017e5b45-ab93-53d5-b70d-3eea5dcfcc64",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0e8f101-df36-5515-80b3-64952dcf7fe8",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf.services.wsn:cxf-services-wsn 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3052fdba-0c3b-590a-95b5-9662cafddcb6",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb176b2d-e4d8-5cb5-a8b3-2aac40d5be56",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0595e74b-7346-5905-9238-f085f3e0ea02",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4685d95b-dfcc-5cbc-a153-ba365aa1a81b",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d25a271e-d550-5964-8a62-04d5d682fe13",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2220ede0-76ee-5f31-bac8-3197f6d6245d",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41a9aed4-a77e-505f-a5c8-91bb82934199",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34ca6ce8-a83d-59f8-874e-a03874f0f090",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:645b5817-e5ef-58c7-acb2-99021048d7d2",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf.services.wsn:cxf-services-wsn 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:285405d1-6120-5016-8b07-388afb8961dc",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e4e0187-4c56-506c-879f-2e7b891d6c35",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dccac908-f797-53f3-9f0e-3caff4ff8947",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17cfdf8c-4cfd-5130-8813-666069ec386b",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf.services.wsn:cxf-services-wsn 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:254ca6c5-bdfd-5ff0-a8de-d5eea6558f05",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efc0bf31-a248-5b6e-9ed2-5a47349a0dc0",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47ff077d-5bfe-543e-889b-4bb00034661e",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48795 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2f123b4-68ef-577d-a348-f68dd74edb0a",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf.services.wsn:cxf-services-wsn."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf.services.wsn/cxf-services-wsn@3.5.9-tuxcare.3"
    }
  ]
}