{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ca0eec0f-baff-5627-9ff4-39b380651c41",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-integration",
      "version": "3.5.9.tuxcare.1",
      "purl": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d0ac1cf9-4403-51bf-a54a-4d6ec98802fd",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:50fcc9b2-a74f-5ed8-b8f1-eaaf536937ca",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:78bbe39c-f492-5727-9c62-31fe4a33527b",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d817fa7-b259-5519-bb02-27a74147f071",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25a5edda-ec1d-5acb-ba3c-1ba841976f57",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd5583bc-de80-5c5e-9e80-383d59785b2a",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07bb68c7-9302-5061-8c7b-2f2dec85771d",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35400ca8-9a1a-5587-a68e-6081066fc8f3",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74e58299-9120-5519-8938-2b867b17de5c",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd664094-211f-55f4-b7cb-3891a75745b9",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2f3daa1-a1db-5a27-ac6a-7f93d7fe2782",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce01dff9-2b55-5186-862b-384f6a2908b2",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5841c046-1184-57cf-aafa-5470f108a5df",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a92780cc-f432-5ccc-96e9-5a4e6c35616c",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ffba34a-a7ce-5b12-8bb6-9de118d50e89",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b7b6f58-c702-5485-81c7-aa76e9abac2b",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8ccad2e-7dae-5e32-adaa-0992bcbebb8c",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-integration 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:488de9ce-b443-55cb-be8d-036d5f16e77a",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1062d97-0a74-55ba-8429-becd5549dfc8",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b343dfb2-5e4f-52b5-9d58-531d93def06d",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1081aaa5-c287-5c2c-9f01-69e0079a4305",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3d8f179-f7ef-5571-a713-8ee60c9680bf",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c78e528e-fdab-50b4-9ac3-6604b7654947",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48cb50f8-5d1b-538d-8662-76a1bfdc6ad1",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fba733d6-c5d3-5ebd-b18e-2219628c9698",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c956db2-512c-58c0-823b-3d9d1dec5e83",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-integration 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9356045-20aa-5baa-8144-0aec567cf9da",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9a2326a-96d0-51e8-a376-cf3d532b6146",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:138f42a1-4f2e-5add-8c6e-4a8aae911ff5",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c81d9556-6d25-57f6-b8c4-8706a143ee8d",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-integration 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:635d767d-5772-50c4-904f-07d47b6c889c",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d961d2fe-68c9-5268-9673-7e761fbb869e",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a26adf7-8083-5885-9a8e-a5fc655db808",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48795 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19793e59-b52a-5ed2-826e-af02b53b328b",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48913 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-integration."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-integration@3.5.9.tuxcare.1"
    }
  ]
}