{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3867e95f-f3f2-5b99-ac36-7c80dcef812f",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-rt-frontend-jaxws",
      "version": "3.5.9.tuxcare.1",
      "purl": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d597e0b6-ef5e-508f-b81d-e9be759d1ce2",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab81f64d-c38c-5b63-861e-aebc6c888f30",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94ae4834-bbe1-5df9-94ff-e31ca96ad23e",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87d2f5d6-b2b5-58d9-b5ab-24c8078e86d4",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4632d6d7-c24f-5dc3-92e5-be329dedb041",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30e60bcb-7874-5795-9bad-5a662814266b",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30476c7c-cc43-5b06-8a6d-a6322c21df79",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21805831-bb4a-52a1-b3d3-867bedd4f70e",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab6db706-a9b7-5a51-96a4-c66e4b74d22d",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af69f666-bd8f-5ff6-aa49-1c09bccebbb9",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5230a90f-81df-5561-89fe-8ae2a96941a5",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d54f6872-dc5b-527a-81d5-f330d30704b3",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98b76a56-6ea4-526e-b11b-45d0e64c290d",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c9cea20-aa6f-5989-87bb-5793f7186c2f",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e859841-97f2-5882-8f3f-14a1fa6c22f5",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f68d2f89-273a-536c-a7c7-80e59debd851",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:921b1886-0fa5-5be2-98b9-ba958a1ffab9",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxws 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9ac818a-3307-5009-b63a-d370dc4e146a",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d0a979d-445c-5d15-baea-a937611a2774",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3b87402-9cac-52f4-b903-e2bce6fc3d29",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eda82d6c-2228-5c95-ac1d-e5e559e82820",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4920f9c1-6f76-5ea3-8eec-aba933201700",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e86c0a2-9404-5b79-b353-6b32ae4507e9",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58e395c8-3bee-518f-b12a-89a32ded9e2e",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fddc21b1-dd65-5747-93c3-a1ffe5b8feeb",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c7f9ea3-d639-59d7-b7b8-888268a1bb64",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxws 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a902025f-9a87-55a1-8315-6d9936c9d0c3",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff87b32e-93b2-5624-9f76-6515ad45eae2",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ea4d1ec-ad93-57da-8de4-858e3da6116d",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e31d23b-d153-5d6e-a738-660fffccb47c",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-rt-frontend-jaxws 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6023fae5-0e0e-5597-9ea2-6bbc3d229fa8",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fe125c9-be08-5a06-b102-5c3738dc7eb9",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4e74b19-33c0-5634-844b-af88847393f8",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48795 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ccd068f-22ed-5b90-814f-83f98f8733d0",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48913 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-rt-frontend-jaxws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-jaxws@3.5.9.tuxcare.1"
    }
  ]
}