{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:eb71b43b-157a-5666-bff0-dc208bedac4e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-integration",
      "version": "3.5.11-tuxcare.3",
      "purl": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:7e82f168-7040-5192-b660-3bc2b57887eb",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ec0a871-fee1-5d72-b2f9-30f361c9b3e2",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80c3f05e-6de9-5b1b-bca9-9d165bcc210a",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:576f665d-1a34-5909-a4d1-eb14f66bf303",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8f8049b-3521-5469-a897-a2330c9a6182",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2511dc72-d82a-57e9-998a-ddc9ca98eb1b",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57e80ed0-cf60-5721-8404-ef01f35d8542",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbfeedf9-13a8-5ad4-b261-03b57e1dbf4a",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2761e905-df41-5ea0-839a-83cc09757a52",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad030a85-1a0c-5887-9a3b-3ae76613b5d9",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6998ac46-95d3-5a6c-8282-0e8f5a065796",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfe88914-9710-5d10-b284-0b11530d0297",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:635c1cc2-74b5-5c32-9370-64db91b464e8",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90d46efa-e6fd-57ec-851e-def7d91fb2c4",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf78a1ed-0998-5a16-b0b7-afb5ab9c6350",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49bd878a-b072-5b83-bab3-7875c55d615a",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e1489ce-39ba-5686-b2ad-33fc12c264ce",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebeeea6d-be90-5e34-984e-4ef7a65584a9",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bcc7b545-8fa3-570b-9c0e-633366ea642f",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f2d9843-c788-57a6-a91f-8a9e19470c67",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0146ba03-a8db-5363-b210-517724ac6f5e",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a613327-0f85-5b0e-82fc-994e92b329bb",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:580ac14a-12b4-58b6-9198-b3b3a32b32d9",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d0bba74-a275-546f-9e88-84c02a9cfd5b",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d49d0b1-686e-5955-a7e1-cefe1c11d9cb",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d0d0bbf-1d89-52dc-a8d5-843518f3d287",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-integration 3.5.11-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bdee7c3-17c8-55d1-a488-2b87da1993e5",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37e7cbf2-2ca9-575a-b9aa-6e1a8ba0bd68",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf:cxf-integration 3.5.11-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcdc6a27-63e5-5948-aa42-0e1c34623b98",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:272769f3-d7fb-5a89-98c7-44e9cb7b91fa",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-integration 3.5.11-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e9bd7b9-2e1d-5961-8179-9369540c5fdd",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4629a7c-53cc-57c6-9578-0d157864705a",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.11-tuxcare.3"
    }
  ]
}