{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:6eda58ab-630b-501c-8b6d-a527950ca05e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-rt-management",
      "version": "3.5.11-tuxcare.3",
      "purl": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:a458ee67-dcf5-5a75-a6e9-99d32b085bdc",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc1f0a24-924e-57d7-b3c9-628a49913c01",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe519832-94ed-5273-8419-df97649bb2dd",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:924fb1ff-6fcf-5a38-b252-30da692a8913",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a18d7fde-af75-5141-a607-482a3dbb049f",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bebcf9d4-5b63-5abf-b220-87c56d7b9d10",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52a08452-e217-59f4-9fb7-68be0428c852",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b65b4ca4-2561-596a-8de8-212a52be53ab",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ab90042-cebf-5179-ae8b-28a924ef8416",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:023f3541-1efc-54a4-8de6-3f8ec832e35a",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee37a5a2-cf7e-5690-8304-a9c4cde57c5c",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5b3c8d5-24bf-5059-b96e-0ac8b9d455e9",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99c1416b-9ed5-5d3b-8003-e8f67709dddd",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a911ce1a-6902-5814-99e2-ac439fb2a573",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49b30786-728d-5327-8f5f-ecd682ee11a4",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fc371cf-a0e7-5d1a-80f6-291b5cd52c03",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba4a1629-6763-53b9-9d11-7c8c177a9167",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ef03e23-6ca2-5a2f-9e59-559ef60f570a",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54d2ec78-e001-5d0f-b933-295a6c524cfb",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6dc6ac41-fa86-5e22-874c-a611e072758c",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8caed21c-6353-5fac-b2e6-a3408727bdcf",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7dc2a22f-357d-5640-96b3-ab859d2e544c",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d851a127-eef0-57eb-b8bf-8c5b6cf5bce3",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bd954ce-41a2-5c13-ae4c-1b2bb46bb840",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ff531bf-6100-5c98-a438-1743acee9e23",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c81f8c4a-e2e8-5e8c-9e4e-38c2c7612e86",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-rt-management 3.5.11-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af1b8544-ca0c-5458-9adc-71e71150c131",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e94bd637-37d7-59ff-8e86-722d5fd4fe4e",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf:cxf-rt-management 3.5.11-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5a52348-d993-5fc9-a3f0-efaaddfe70be",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9177ed8e-ee70-5ef0-b7d1-2bdc83c90260",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-rt-management 3.5.11-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64488457-ded3-51e9-bf7d-e506b9739ee5",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46f9f6ee-2e10-5ac5-8fc5-2f3eb35efbcb",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.3 of org.apache.cxf:cxf-rt-management."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-rt-management@3.5.11-tuxcare.3"
    }
  ]
}