{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d3e88e17-1d89-5695-a06b-249acef309bc",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-integration-tracing-brave",
      "version": "3.5.9-tuxcare.4",
      "purl": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ee543f49-7f5f-5adb-bad6-9b95d2f4f170",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e76a2af7-e760-5cc2-a409-79cc43f34580",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbd1dfd2-bd54-5d64-8e93-ef2ec3de6c65",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e960868e-7133-5f0b-aeb8-1ca98e98baaa",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd45476e-0c74-5784-af43-2d46d87f6333",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1d3deb0-3b73-51e1-9404-2a7632b0ba3f",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02efd8c9-19cd-5e86-baf8-25891b988a8a",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b19c289a-98eb-521b-8fda-50c7cf8ebf9e",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eac1dd8d-bb23-5085-bb47-3a3dc3ecf8c9",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e38f352-4fef-5417-a6d6-564fe093e680",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4226eada-6025-50d8-8d85-3b4aaadf46f0",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e107680-8201-5287-b432-2a2b89623d63",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48fb846c-7b15-50bb-90d1-9eea1cd0f7f1",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d4ca721-51c0-54ad-9b8d-3c7de5ce5b26",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bef64144-5715-59f8-923e-0e85afefa743",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4ec3f5c-5ea0-5b5c-ac58-c79493674ffb",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d61926db-ec4f-5e2c-aabe-7ceede1d30fc",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-integration-tracing-brave 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:609fbae1-0385-59f1-87fd-f282c73eca35",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07866c54-b566-559f-9c49-c75f3f85269e",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4eda59b1-2aa7-531b-bcd9-82f5e911a68a",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:990d5ab2-95a7-567f-a1e0-15000b60ba34",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e856e216-d411-5658-b424-e9b1db70322e",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf7a299c-6913-534a-9651-980a861def3b",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:593fa318-cfc8-50ef-be1a-04c5894c0f3f",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ddf39b92-541b-591a-991c-57ceb87ffbe8",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1afa3894-496d-5313-999f-42362cf47907",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-integration-tracing-brave 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7b99ea9-3752-57ef-939c-ab5684e859ed",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa94423f-f8f8-5d4b-976f-21889228da5e",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9df93485-65cd-57f0-9b67-8c7903da6d6e",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2dc6fb5-b544-5c49-aa08-ccc92f01858c",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-integration-tracing-brave 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65dbcee1-c00d-581b-9166-bd9167bcc258",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b161d66-624e-5289-81d0-8e15a98a4b81",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a267991-b6f7-574f-904e-cb979a1affae",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48795 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a0f1748-9ed4-5fb8-8557-cba1eb6b5262",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-integration-tracing-brave."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-integration-tracing-brave@3.5.9-tuxcare.4"
    }
  ]
}