{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3b4dc03a-c2a6-5135-a12e-52f06b3b7191",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-rt-frontend-jaxws",
      "version": "3.5.9-tuxcare.4",
      "purl": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:de144eca-c38b-5da8-b73b-7dbd761e535c",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01068422-fc3e-5d82-b9d6-4a4d89dd2b46",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fdc75fb-3e6d-590b-a534-c7e6a35a8d9e",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aab59475-ff14-5c76-afc6-887bea025010",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e24bb136-c35a-57a2-b525-082a8edac9af",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b10051af-c5d5-53b9-9d13-9bc95d77bf0c",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5810ad7-15ac-5f10-b7a0-ac4b622879d4",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82772822-2fe2-5d99-acd3-ffedcfdad2e9",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:637f8852-1759-5fd1-b0d6-d8498769aa00",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a340650a-ec92-5bef-85f9-da7318887836",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:193825d7-fa4d-54a6-a6ab-c9eda504446e",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:400b2993-826a-5a7a-a81c-245a6b3c7eb5",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91da787a-b92a-5205-8623-d2b489ca3292",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27a7d207-3052-538e-a23d-f3f6a5db9efd",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b64613f-bda0-5d83-9597-ab7390e3764a",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb94722e-f96e-5b53-ac9b-41df36234e89",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3422a7c-4c31-53b3-a6e1-3eedfa2c55ab",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxws 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4ab1fd9-7489-50ea-87aa-841ebe15dfe6",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f889b8d2-c437-55ce-8549-b8685db7bee4",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4096a28c-fad0-5fa0-8bd2-e2ff611f3a37",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25672cba-6a29-5bfe-9b45-6f9f7665fbab",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ad1e19c-4711-5237-8961-fdb5c7975b13",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:983b8717-23a4-52e1-95fe-b1b4c21e8eb3",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7c4a0ec-cb4f-5872-bcac-7b81566221f0",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fc3e214-4ab0-58c2-a910-da74f3da4c20",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a152fe9-5583-5e16-a9ef-2eae94da639d",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxws 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c2f9056-5173-5ee9-9a2a-20c13310bd62",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24297be9-4498-57c7-8b5f-705002d4c872",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a905089f-2352-5940-8227-8e6bd4ccc895",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:607d4574-6757-5330-876f-910a676a0232",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxws 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3eec6d96-7999-50a3-b9cb-76267ccdde44",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f09f119c-ce61-5178-8d43-4a8a24284aeb",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b2911fc-37fd-5f2c-ace9-8569229a0d46",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48795 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5b8360e-12de-5bed-8272-1f9065759d07",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9-tuxcare.4"
    }
  ]
}