{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:cc567654-a98a-5f4e-9a16-2b89d8ee64bb",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-rt-bindings-soap",
      "version": "3.5.11-tuxcare.2",
      "purl": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d38218c3-d3d0-5d54-a760-e6f474670597",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7d1e57b-4273-585c-bc1c-d5266cfb9a94",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c2b9a2c-74b1-5e09-bf4b-63697baaecd4",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be0571ef-8bb6-5107-8e3c-acd870ff1553",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b7caf52-1369-5277-bf33-da985b59d1fa",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5e3cd35-09d6-5e75-baf2-9c6f85803d10",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e8dc1c9-7b26-5012-87e3-40c9fda03af9",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba4462c7-dca6-5b58-bc9e-7dab87daa505",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffd7fcb2-718c-5e3e-954b-397a2d6162eb",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe878618-3a04-52c1-8736-3ba6b8bee36c",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5bc62a9-cb7b-588a-979f-a55e76283079",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf11653b-5fde-59ef-a8f6-e6a186122010",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a677ec18-ac22-5d9e-911b-323bc9647ddd",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef545b39-103c-5d9c-9516-a6516764aed1",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e78b46ef-ea39-5cc4-9906-116f30aa0eac",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f3404e1-4883-5a56-9b9d-dec32ed13e34",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e59f75c-d65a-5b45-830f-d04890aeb474",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9eb94463-22ec-5b2f-8e88-4b36dd4ec614",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1cec948-d571-54d9-90ff-af408e08ed74",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d974e27-36dc-5fdb-832f-fb558573cf95",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc76f455-ebc5-55f3-9107-82172e8e38b5",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bcb1205f-d7e5-55de-9aa8-5807c4edce6f",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca564f6a-95ad-51dd-a32e-79cc8dbd6741",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa8e4699-ace6-5566-9216-5ee1778e43db",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67613125-ca31-5d95-b8f1-1fd074c7b8db",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62c6a5ff-89f3-5c41-a7c6-f1f3b0077568",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-rt-bindings-soap 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b48bf69b-6516-5508-b795-6690db6eb566",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:78714feb-a645-531c-a4d8-c16d1d886db8",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf:cxf-rt-bindings-soap 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80bfff2a-535b-5765-b564-4a0e23ef3719",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8acf31b-fbb1-586d-bcef-f1ff6c821e26",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-rt-bindings-soap 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1fe6f7b9-bfce-5287-af93-8227a05026ae",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:999849e7-d07a-5e01-953a-608023cb8b8e",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-rt-bindings-soap."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-rt-bindings-soap@3.5.11-tuxcare.2"
    }
  ]
}