{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c7e113d9-e124-5f67-af0c-926d3797f904",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-tools-corba",
      "version": "3.5.9-tuxcare.2",
      "purl": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:2d44899c-ff54-5be6-a154-05b28753b367",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8118048-7792-5118-adfb-c7967bcad661",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:389face0-46a1-5a22-af61-a99d3bcf8371",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8d73e8f-7e5e-575a-a0bc-688b7e444934",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfa1560a-21d9-55fe-b7bf-66d8416b985b",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c0e8bf0-0671-51c5-aa4e-961b9a69f1c1",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:953b2b09-dada-5d29-bee5-5cc8eb520ad1",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd484562-edff-5504-a7a6-17e08cfa6477",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4bb9281b-9223-57f9-8fe3-7cefb1ac38a7",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b9ad851-0751-594d-a50b-1888c64210a9",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:777cf1c4-8d44-5580-a07d-fbd46b0bc247",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a65e0a7c-3ed1-55a9-b61d-4d1fb0c03382",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e17d555-0401-599a-9949-dfb49dea6c11",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0171ee3-fa2f-52b3-a0a5-20b25be30530",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ae94abb-5570-58f7-97a4-768a96befb52",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62cf7ff3-18f7-589f-9ae8-74a13012b8d0",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4a91707-3ea5-53e6-a803-92b2ee510296",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-tools-corba 3.5.9-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2939da7b-fd14-5a24-88c9-959d913489c4",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d4b0828-6f92-5b5e-b191-45825c6b50b5",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f597adac-e1dd-5bf1-acc7-5f7a2485e740",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fc51564-d3ac-58e7-a7ed-d34f9d218cad",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb42b7bd-6934-5c61-ba97-f38186475ba6",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:774ddecb-93c4-5d92-a51b-e175dba04edf",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ae6cd1e-0110-5157-82e0-bb03a8629dca",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:626ff2cd-1fca-512d-bf32-5241197e68f7",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8faeb95d-da6f-53be-9599-bf208c6941d3",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-tools-corba 3.5.9-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2493e7d3-da15-513d-8d3b-d5cf35846351",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:899be384-f0a3-50e5-addf-4eed1acd59cf",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a75ca1e-381a-56f6-8b2d-e9ab760707ba",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5cc9f95a-0efd-542c-846a-345cf053b679",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-tools-corba 3.5.9-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5eff5817-c420-57f2-9bab-d792f352f97d",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dc3e256-70ea-5215-823d-b194fbc1a425",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:845f803c-8025-5d2a-85b6-42224388dac0",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48795 affects version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4523efc4-4bea-5469-9858-e7589bc326d6",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.9-tuxcare.2 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9-tuxcare.2"
    }
  ]
}