{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:52ef7120-ed62-58ca-a432-20d9010ce52e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-integration-spring-boot",
      "version": "3.5.11-tuxcare.6",
      "purl": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:6aae4726-e1d0-5571-8098-59c88d06795e",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43d4ff92-55e3-5619-a51d-219fd7c954bd",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:569d6603-c7f9-5378-9095-cbe80817745d",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ffb4c8e-ace0-51a8-ba83-a65721641a4b",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d0013ee-1a24-5205-aabb-c6931923bd04",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:590835a7-b319-5c31-b469-88c6cfda34c8",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c78f816-bdfc-53f2-8063-427fd9970f4b",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8de427f1-e607-5080-9c49-7a48c43501ff",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65d655fe-a73b-5dc1-9133-b267931a2204",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8ee7332-978f-5c5b-ad8b-acfc44c345fd",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2842cec8-43f9-54cc-84bf-e9abc09320f1",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e16ccf39-9124-5c1a-831e-b42ad1c66e42",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af1a1aea-1d68-5819-8929-aa5b9047b2ac",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09787333-9f2f-558b-a13a-26faff803c32",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5faf2dd-524c-5075-965e-327ef45f50f2",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11c55950-fa30-5780-8bb2-102e404a6213",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a755ae4-7bde-5ad3-9296-d4d82573e8ac",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60a34d38-51f0-5f3e-a58c-62c1b5934280",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d040a8eb-77fd-5202-8fbc-7f27df34a072",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8d57fe8-6dde-5275-93b7-e50c5c7bd7e4",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc8621b6-2ecd-510a-8454-9cf522a4b190",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0183271-9189-5cd8-921d-ccf8bbbe5619",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d01c1e7e-bba8-51fe-ab91-9d73d90e7446",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d42eaae-42b6-572e-b6f3-c4f18d4f7bc8",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d73a1618-68c0-5808-9fb7-fb6aa99662bc",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e67bf9fa-701f-5cb2-a94e-71dee70f627a",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-integration-spring-boot 3.5.11-tuxcare.6."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b231838-7edb-5948-a52d-96a4fb535739",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87a9e218-d605-5548-a83e-a52a7e7aa60b",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf:cxf-integration-spring-boot 3.5.11-tuxcare.6."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9188c27-bca8-5a38-aa75-0aad19ced8cc",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46ac61cb-b191-509b-a694-731c6f489424",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-integration-spring-boot 3.5.11-tuxcare.6."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:905eb089-8b93-520f-90fe-f56e4e4f9754",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:055260ef-3208-531e-a8fa-35a6e2ad2b18",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.6 of org.apache.cxf:cxf-integration-spring-boot."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-integration-spring-boot@3.5.11-tuxcare.6"
    }
  ]
}