{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c0646222-85b4-50bb-bf79-07d4e3c1de6f",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-tools-corba",
      "version": "3.5.9.tuxcare.1",
      "purl": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:2b97c348-f2a3-519f-bcf5-4b79ba80ca00",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff30da9d-7053-5760-b6da-bdacfcd815db",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b8ff992-09ba-5920-a99b-3ccad41dbfa7",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35fbd2b0-dd3e-5ada-9d0f-fd677f2abc0f",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb826cad-500f-526d-9ff9-a0cbe342735e",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:245b52e3-7d86-57dc-82ab-9fdc918d62fe",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17e68405-faab-5450-bb86-efa3aeb9a18b",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a0cff1b-c3e2-5f3b-9c32-dbdee10990db",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f3a9ded-9874-5307-9591-ee9de811f930",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16ff01fd-95b0-59ab-9660-4c619d941531",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:552b58c7-c68c-5ccf-a57d-22a0632e5e45",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64ae1284-4d22-517b-ae1b-50d200c9cf8c",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81a11f05-dd52-5411-84b5-29aeb1847d81",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7b045f8-17d7-546d-8f2b-3f8bc6d15c2e",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6926cc5c-6a70-5dad-ad87-b5b87a7a0358",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87ddf0e6-7bba-554e-82e7-0c5d7f2943bf",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c76d0330-8072-59ab-b8cb-87a2cbcdd8ab",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2014-0119 is a false positive for org.apache.cxf:cxf-tools-corba 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29f2c3ad-704c-549b-a852-0e4b3f82004e",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af660ced-886b-5ccf-baef-ebfa8b3c9af3",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4f8a6ed-6f25-54b6-87a5-04593bb0b5db",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd805b79-fda1-503e-9bc7-8c0503103453",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c396c95-ada9-51ad-b629-a048f140b5fe",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da6423f1-92ef-5b0e-aca0-7ae4486b707e",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:126eeed3-2f5e-5374-9112-86f79c156c04",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d59e9884-2bde-5978-918a-52d5e326cffd",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15acf127-c5a9-5a61-a8a9-d059938e07b1",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-tools-corba 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d183c24-2149-504a-ad85-764c5776eb63",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37b6f45d-c874-5341-925a-7552058fcdb9",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-22932 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6dde60e2-5d69-5683-a796-d0ff2e624439",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b5009eb-c96e-520a-b0c2-5fbc6ed4bd37",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-tools-corba 3.5.9.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6630ef97-62d8-56c8-8d2d-3d18e8350ee7",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-23184 is fixed in version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d6f0512-96b4-51c4-9a05-944b16b1dffb",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5158784d-01c4-5fb9-af82-c6b0e7825d28",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48795 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a52f3f3-dbc9-51f5-acd9-80ac1ee00492",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48913 affects version 3.5.9.tuxcare.1 of org.apache.cxf:cxf-tools-corba."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-tools-corba@3.5.9.tuxcare.1"
    }
  ]
}