{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:5cda8e42-1380-5db6-93f8-e1bc16e50a02",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-integration-jca",
      "version": "3.5.11-tuxcare.5",
      "purl": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:c22c56fc-bf75-5701-91d9-65613a9c3980",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c3e20ae-53c1-5398-bd27-110c349e3644",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e214870-1ee0-5e88-bff8-383c0580c85b",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57e516a0-70cc-5eed-9841-675d0993c1af",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c0305df-ceb9-5f7a-ae50-8536d4884083",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c03384d3-4752-5897-9b5d-14abbe4fe269",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03f2a21f-63d1-502c-a3d8-6cdd27ae8ccf",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bf9ac46-e885-5500-b8a2-cf5b8a6613d0",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eddea8a6-fc81-5100-bb3c-6c0f3c6f08bb",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6663b36a-2855-5e85-af85-4d33700f0767",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d6e2dce-b3a4-5b2f-ac92-f63c72eb6854",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f6b645e-7fcd-5b79-8d4d-9d71e386c4a7",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:769959a2-46de-5458-a25a-0c80f6adce11",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d6bd1b7-c346-5aa1-b22c-2535d6a18690",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c78ecbaa-e2f4-598a-9a8e-92f7250b662a",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45f5632a-4a0c-5910-a3ac-5b21462a8e85",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48034019-13a2-57ad-9381-4311e6a5d3e8",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9a625ed-5408-51a7-b239-8f5539b94a4a",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:910b6fc3-bde5-53df-b818-a97f4fe8f07b",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:acb7f6ab-dbca-5436-b74d-394c9ded307e",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5add3ab5-d60f-5067-9ec7-8e4e764e2127",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:965c402a-0710-54dc-9906-35e54eab958b",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11968299-36f4-53e8-bfde-bacac8d78038",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d15b164d-d927-55a2-9785-f65f3825cbff",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1a9289f-5cc8-5e4a-be42-739de1250977",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0492af80-8dae-5a5f-b338-f0c4485d967d",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-integration-jca 3.5.11-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e23428dd-8f4c-5882-b00a-186e447fb7bf",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:067d6666-2506-5d27-90e0-700aaf2f4b28",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf:cxf-integration-jca 3.5.11-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46120fdf-694f-5adf-bedc-c52d735f532c",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab001ef3-1b1e-5004-a7fe-572fec022389",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-integration-jca 3.5.11-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac39ae51-1d43-52ff-be18-d0752174321b",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d077bc14-9bb8-58c6-949b-cc5ec2a23e6d",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-integration-jca."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-integration-jca@3.5.11-tuxcare.5"
    }
  ]
}