{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:25843b33-88fe-5748-bb2e-46d3ea9630e7",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-rt-javascript-tests",
      "version": "3.5.9-tuxcare.3",
      "purl": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:cba8354c-0794-5788-a3ee-235cb7790324",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac2103ec-01c5-5373-a8af-cb46fcb98a1d",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:187aa833-748c-5980-8e9d-f9a60c27d3db",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c11f69a-0d5f-54e6-904a-53626aa27921",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3769ea17-5761-57d9-b352-b79c2026ba1b",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d524d51-8193-565e-ae04-788eaeb500b4",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a3e269d-5bae-5e7f-941e-1549d5ac8593",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67faefb2-45fa-5d55-ab5c-87210d4d5f88",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b352a29a-8c89-51b6-baa8-c5cc3f8be4bc",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7706c8b3-9021-5b1f-be37-4838ef7cb5d1",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ed4522d-e878-5e82-93d9-9a7d49fb51fa",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5bab6c5-150d-53d6-a723-4bc14337096c",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33dc7f37-298d-5ba0-b72c-974608ea17e5",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a56e482-bc04-58b0-ac2c-39834699b917",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86bc3225-371e-5de4-937e-ca060f05fc8f",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:283a8030-b387-5625-b3f5-5615afc34bea",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ecffbe2b-b62e-59e9-b9a3-04044b6280a3",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-rt-javascript-tests 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:341c6662-0235-5ae2-9b85-ffe1fb283191",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7b6b4ba-39c7-5554-b6d2-db491c6f7417",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b71b349f-0c45-5921-a962-5b0f204ebe2f",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33bcdb91-3e96-58e1-96b3-9a9ecee7ca4e",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efc22c54-8c28-5ff0-bf14-dd73c40dabcd",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1454deb0-1774-5ffa-a13b-3f9f6ed26406",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0126e4e9-8834-51ac-a0fa-35d4313c41ee",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e87e648-74e2-53f8-96c9-021008f743e9",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98b943a9-4fce-573c-b6a0-fa93282b1a61",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-rt-javascript-tests 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75c86389-446a-5ac9-8e83-0b587bbbc614",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5991d7d-ca2f-55b7-8bb8-a98ad5577ed8",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cec1b14a-c94a-5c7e-bad6-507300ace677",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2910b62a-86be-54ce-96cd-cdbf5886f51e",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-rt-javascript-tests 3.5.9-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ba8e312-66b5-5ab8-a3dd-b447db78ca48",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bef686f1-1cd6-51a7-b6de-f9612b66c7ed",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e381ba62-8bf7-5b4c-8a90-b0fb93184079",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48795 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8aefccb1-5ca3-5ac8-8a46-bffeb9b5edd5",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.9-tuxcare.3 of org.apache.cxf:cxf-rt-javascript-tests."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-rt-javascript-tests@3.5.9-tuxcare.3"
    }
  ]
}