{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1c38e6d3-4671-5e8a-b575-dbc75eb95e3c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-rt-frontend-js",
      "version": "3.5.9-tuxcare.4",
      "purl": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:965adcbc-92e2-5fad-8265-9556603b28a3",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aefdc9f5-6a17-59e6-8d34-472601aeb727",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3374262d-6782-5054-bad3-6b6d29920369",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdaaeaf0-88d9-5443-bd53-4f1ee20e900b",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0d9a207-8edc-5f05-888b-706d28d73d95",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5dfd86f-6f05-5f3d-aa53-d18776521cde",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bfeef66-fd1f-5538-b562-00a5926c0749",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c765e31-c28c-5a04-96fd-6166b731a47a",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ace17a9f-bd91-530e-8eb1-0f1223483410",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5257660-798f-5d76-bed7-0c218863fd25",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7139690-bd55-5917-b1de-f1b2679f4d42",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4867bc5f-8a69-5de1-a286-b8e5d86d3c10",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffd1bb3a-b727-5304-a9d2-e296938d8ae7",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f17a2ef3-bb56-50fd-a7f8-301ab7c34656",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:455a28b5-0745-5d98-9662-dd86234250f6",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42a83415-d78b-5835-aa3a-572543761af1",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0dd76e7a-0ec6-5444-895c-c63839c19e68",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-rt-frontend-js 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:163a3ca5-2475-56a2-aa0e-938cc4c04e59",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1087329d-982e-5917-937b-51791181fa16",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3c86073-2126-5bf2-b2cd-a27da0a78a73",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53b0f324-236a-58ec-857c-5fe9ccc1fcbd",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5837fc01-002c-5080-9a5d-a32f961f0296",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9282773-f047-54e1-aaae-4277ac193312",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af84c457-6f16-545f-ba1f-fd59e9bdda3b",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47ca2dbc-bdde-59ef-b909-96b5e17bd15b",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42412bb0-3b56-5cca-b76b-b30f1753a957",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-rt-frontend-js 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90165c74-069c-5b3a-b990-af64003d3f2b",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:868f5136-54b6-5aeb-9aad-e76b30a4c84e",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97deec30-4622-55ff-83be-551f460f4a49",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:743dbdbe-e422-5769-a125-f8a8fd76a78f",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-rt-frontend-js 3.5.9-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68cbdfbe-12ff-5144-a6eb-10123c852487",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ef32e11-2015-50a2-8679-efbdf84b62bc",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f595f5ca-c8bf-539a-becb-ea516ad1ba34",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48795 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab6e31a2-fd2f-56be-8ebe-4acadc2a391e",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.9-tuxcare.4 of org.apache.cxf:cxf-rt-frontend-js."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-rt-frontend-js@3.5.9-tuxcare.4"
    }
  ]
}