{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1e256445-56fe-5390-9492-e3f8021a4bf8",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7",
      "type": "library",
      "group": "org.apache.cxf.systests.wsdl_maven",
      "name": "cxf-systests-java2ws",
      "version": "3.5.11-tuxcare.7",
      "purl": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f9f8b310-b087-5bcd-ba99-a3cfd655d253",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab1fdd48-1a6c-55a6-8e7e-64075423f34e",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d4c6c07-3d93-563d-93d6-d675c10d5802",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b16b05f5-8822-506c-b392-a43eb18cef04",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bd73994-cf32-534b-8f99-dda79e0f9e56",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:511318da-99ec-5fd9-aed9-98e53522803b",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0984b4b4-36c9-50bc-b339-e306bcf9dc2e",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05742f1c-7358-5830-a453-bba9197b4f15",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8349e6f-6ddf-5a27-aa09-a34cd0f6a81b",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7d3e6e7-5583-5896-ac0c-e34090738982",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cac4f705-3a6e-5c83-96c8-7e3e24caf291",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:226e9791-d156-59cc-9a9a-3a274c6c4726",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc329286-e662-5294-a225-8a50c04678a8",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f03aa006-7e69-5708-8e62-9aca8c274f89",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc75d613-b7f5-59a3-b310-d86f86cf2183",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3c41be3-1b5f-50fa-b6c4-961915d74b0a",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:289fffad-ae6e-5d45-8e97-f72b49c2d06d",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d181cc3-98b4-5458-b7c3-cb7c1f48cb26",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ac2e0a0-7f3c-5580-9ca6-227120a057b1",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebe63722-5ee8-5a90-912a-e3861444b05a",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbb21bbc-8c40-578b-99ca-065a7021677b",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7ad67b7-ab0b-5ee8-aa6c-6ff96cf6c717",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f80cc57-df35-5720-a540-c698553eee62",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:712440da-1d5a-5b34-b6fe-0b25fdb60744",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be2d17c0-65a1-5492-8969-5fba68a6d881",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d66859e4-86a0-5695-bddd-2a07395aa716",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws 3.5.11-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ee41a2a-81d5-514b-a13d-f8422ffd630c",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:019e52a6-fe69-5164-a674-48a40fa56b40",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws 3.5.11-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:246da35e-f300-5413-9e3b-6e5a2e060926",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23cf09b7-1b5d-587f-bb38-f32dc5ea2ac1",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws 3.5.11-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9cfb2fc-fe56-5afd-bd43-1fee0b50b013",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f197837-3a1f-582b-9358-9c5a5b15b263",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.7 of org.apache.cxf.systests.wsdl_maven:cxf-systests-java2ws."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf.systests.wsdl_maven/cxf-systests-java2ws@3.5.11-tuxcare.7"
    }
  ]
}