{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4aa432d5-1dfd-5fb9-a0a7-6cbdf52b8d8e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-tools-common",
      "version": "3.5.11-tuxcare.5",
      "purl": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:65bab0cc-7873-5f1c-8882-cbc496b8a73b",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad734e58-1ba7-563d-ac0e-4a4f9741d26f",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebca38e6-b151-5005-8816-51e469cde949",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:daea7265-7c2f-5ea4-a945-2264c05758fa",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10b405c5-e835-5659-99a0-fda6ea54af7f",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58599029-e4f4-59d6-b4ee-7cba6b20e382",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fdb7a54-7898-572f-ac6a-081e33862bcc",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7b3fef9-379d-52ed-a90e-c81a14808829",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9c5de88-54e5-5148-bc9e-fd4bc170a581",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:034fae37-8b3a-573b-82d0-739f6681383d",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e19b3074-3326-512b-bdf9-b47e7bdf0203",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c3888ba-9675-5063-ae6a-4a46cc408894",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e25cd4b1-7898-5a55-a49d-a9b7a092de30",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c30adda-e756-5482-81c6-5e9e0f5edda6",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:711a4230-ff9a-5c6a-9d1b-394a3ccda4c9",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73f23c9c-03a5-5dce-9f09-662d25a305ca",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfab258d-7c48-5655-b999-d2c583c91a1d",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:732ab543-2fd9-53e7-8c68-5da964bf8f0e",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93386a3d-f296-55d4-b30f-e65d33207187",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1d01e4b-d445-5966-a9aa-c8134b4b478e",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da5f2f02-a0a0-5043-9cb8-aba922235930",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58806b4c-2c24-5634-9404-5e3838d8a8e5",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:479464fd-522e-518a-b28c-77fd6ad42186",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:363a84e9-1062-538c-b5fe-070137d1900b",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:346a1612-1f1b-5987-902b-952c3d2fc423",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6860c3c0-e76a-5c1e-abbe-c2a2a5255fa4",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-tools-common 3.5.11-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45c810e1-f391-5b57-be94-7f6ea9d1df31",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea412df6-9b87-598e-bb36-3e3da22c64eb",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf:cxf-tools-common 3.5.11-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9dd7a2bb-ff10-51cd-b6e8-5eefbb8a6dfd",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1ba98a3-8446-5caa-9443-d5b73eb84093",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-tools-common 3.5.11-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86340dde-38bd-542a-9afa-ec520595ecbe",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91cd38ca-4dca-5d45-9b20-58b2ebadcd90",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.5 of org.apache.cxf:cxf-tools-common."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-tools-common@3.5.11-tuxcare.5"
    }
  ]
}