{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d2a50176-d782-5e8d-aaf2-33388705fade",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-rt-frontend-jaxrs",
      "version": "3.5.9-tuxcare.3",
      "purl": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8c737253-5030-5e93-af77-4f7f670620cb",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86558f6a-7e93-5421-9305-77d6ae3460d4",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ea764b0-08e0-5488-820e-ce6d48e2fdd9",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87536ca4-af88-5e1c-af41-ddf3a27d9d7e",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:933dc010-522a-559b-9ab2-ec8aab3cef66",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55498289-36ee-5abb-819a-22d108707342",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abe7db18-3ebf-5438-9b39-14d7f69fecd3",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:50c48fa4-574f-56c4-9d7b-9b1519c0b0eb",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d51cb567-4076-5266-8d03-a2a3d7cc64be",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74379547-66e4-559f-b596-a26061afe65b",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cfd2eca1-ff95-5eb8-9bcc-c1679432cdd1",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b324ccc8-d89f-5c8c-ad29-57668f558974",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:723546ea-daf2-5572-ae34-4b6ceaa22c9f",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4be8aaa3-5559-51d2-b1f3-8c7a61fb0a5a",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0bd1c760-385e-592a-87d9-a5edbe53963b",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a71d954-c57d-5cd3-9e86-d317cda4401b",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12ab4d2a-7b49-5ae8-8388-272e8fd398e5",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxrs 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26e34c15-e0d6-505e-a28f-3c3e68ec2acd",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2cc29db1-9406-5bd9-81ed-bd95a23a1bf4",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8124e48c-e1b8-5736-a3fa-28fa6f2d8a9b",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3460646-75d8-5700-9ae8-5f8b2229cb7d",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:849336fb-1387-5c62-b9cc-031cb1dce293",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbae969c-ae58-536f-9b16-2a04c79628f9",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d8ee1bd-a2aa-5f94-bf50-024f7d80a8b2",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b3ddfcc-e910-5d27-a4ce-2e8c03952db2",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f59a96d-6463-5847-b7fe-e64110141950",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxrs 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83852ea6-aad1-5441-bf89-a9cc18927a9c",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:266f7bd5-03d4-574f-be1a-a8725edb8059",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d52de68d-d7fc-5b00-9a00-af948f1834e7",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6b9c1b3-b82a-52e3-84dc-72032976553e",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxrs 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a062798-b4e3-5f47-ae8a-55eac11c8c0f",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77cc483d-7ebc-5211-8453-42971f6c9669",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2cc0632-4e87-5ec3-bd12-018c4de0856f",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48795 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7758dc62-9fa8-54a5-89c4-c90436ff1fc7",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-frontend-jaxrs."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxrs@3.5.9-tuxcare.3"
    }
  ]
}