{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:8f6731c1-37cd-5649-84ed-5e88c9046f42",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-tools-common",
      "version": "3.5.11-tuxcare.2",
      "purl": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:58ffaccd-e96f-53ca-b0d7-83264ad26466",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ce96ac1-8501-5933-b00f-9cb9a3ff585d",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f1ae6ce-cfa5-54d7-a6d1-fd546f76d45b",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65defa80-45d1-536a-ab22-ef79691d3084",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:665ace60-fa5f-5473-8ab1-d0fe5b00a132",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46592df1-b26a-5326-ad59-c2f3ab12ffd5",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b17fb11f-3a88-577e-90ed-05de1495a233",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5b00db1-8230-5496-863f-c99c35b1ed72",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:948dca44-6e1f-5eb4-bb85-26fabc7b1fa8",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f603fbdd-5b1e-593d-aed2-98ce45e8132e",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e1314af-06cd-5ac8-886f-41047b767566",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ec06b85-2850-5bac-ae48-ed4fff4bc644",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8254bed5-8b4f-5014-be36-94bb6d7746d1",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7e0a394-33b2-55ce-b43a-5e9f506bfdb0",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5ee2278-1dc1-5216-97b2-03309c7b47fa",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e7dff02-b6d4-5c77-a6c1-65b5e6566f1f",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bfb09e6-cc78-574f-8617-c7f3a18dc0fb",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88b8250d-bce9-58bb-912d-22900994270b",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74d4f74c-072c-5285-a481-e3ad15d03123",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e1a7474-73e2-5053-8769-ccd54d9d1a4e",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d313a73e-15d1-5844-9bf7-0485673327ff",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de6f1502-85e6-5c91-92e7-46710a408b47",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c39d9b2b-9550-57e2-86a8-3c7019295673",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90d6ee92-8872-5295-bf13-129ee7b7677b",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d23997d4-af1a-5887-89d3-a7fa39f1d472",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a02bfeea-45ae-51ff-b11a-a8db93f947f2",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-tools-common 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d5440f9-456b-55d1-bc4e-729641664bfa",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c6fe2a0-f934-5469-bb68-61d40c105be3",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf:cxf-tools-common 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb0b377b-9e9a-5a28-a5d2-5830c0f777b8",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e6c29ce-be3e-5a98-b323-696c3285c37d",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-tools-common 3.5.11-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e2afa33-0c85-53a8-a223-7a2a49c3b8e1",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bebb9b0-59c3-57a1-9428-fefc5b130795",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.2 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.2"
    }
  ]
}