{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1fb92039-4893-58f0-8abb-f57e2206d2fb",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2",
      "type": "library",
      "group": "org.apache.cxf.systests.wsdl_maven",
      "name": "cxf-systests-java2ws",
      "version": "3.5.11-tuxcare.2",
      "purl": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:77803a03-2566-5b54-975f-0c5244dcee99",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:182603d6-b738-5dd9-94a8-d1c9cd18d803",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b527a77-c02d-5cdd-9a99-5fb43f501f32",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2362cdf3-94e9-5f0b-bc05-075f8ec243d9",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2a33c9a-51ec-5c50-9e0f-42fc83240be4",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:116517d2-cd59-5368-8ed4-7a84d01fb48b",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2291035-a4fe-5de9-a094-4a5fe820a58b",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d83a923-8e42-518a-86f5-c63640e50ba4",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1d0d4de-3cb6-55e3-bc76-ba8b8b3584b1",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c0bd5ee-1f81-551b-bcc3-cecf3c525004",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c539445e-acd7-51e5-89fd-dedee1fc16b8",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad45981c-d99f-5af0-b18e-772ede0ae378",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5e2ca7e-54c3-5720-b340-b5ccddd69ccc",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db7e057c-ac70-522a-af6b-b690105c1379",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6265d19-c4e0-5ed5-aa7b-08f8a44a43cf",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec95efc0-1dea-50f9-ac24-c16e0af70115",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67439feb-309b-5b4f-b249-1def6b88e82b",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd1830fa-d7d0-5890-989a-4a3678941c1c",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0e8e07b-f2b6-58f3-8b0a-1dcecc3bb3b7",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83fd5955-0f87-55a3-88c7-848d9abdf663",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42ab9827-6aeb-511c-9694-25cd1b5dc48c",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f3041ea-6a69-5493-9fc5-b27a79f73845",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:736a32f6-516b-5b0b-9faf-d69d9aa1ee25",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8883779-b380-566a-a71a-631e3060f8ee",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4d8eb40-2a93-5acb-bdd5-954d5ed4718e",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a2cd09a-8613-5c44-aa3c-f55c731609dd",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d3184d1-058c-5bba-b81d-b23182a9c1bf",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e9e2107-5ff3-505e-ae76-2eddf9f6379c",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9304454f-109b-56c6-8aca-709daef8f8b4",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b666663-111b-56f4-8bfd-64ff4edf055d",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:200d6fc5-3937-5d6e-9571-27e57390ef80",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:773db6a9-108c-572d-9eb6-ec29c0130832",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.2 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.2"
    }
  ]
}