{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:839209eb-b44b-5d2a-bd9f-fbeb5bf475a6",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7",
      "type": "library",
      "group": "org.apache.cxf",
      "name": "cxf-integration-cdi",
      "version": "3.5.11-tuxcare.7",
      "purl": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5d2e77b9-4909-5196-b6ce-e51d9bfb5b0f",
      "id": "CVE-2005-4838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2005-4838 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4711838-4154-5935-8215-8b6a303aa7b8",
      "id": "CVE-2006-7196",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2006-7196 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c260eaea-1482-518e-9ce4-f62747145a7a",
      "id": "CVE-2007-1358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-1358 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e237290a-a8ff-5f97-b62c-0e4eed85b580",
      "id": "CVE-2007-2449",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2007-2449 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7d80c66-d29a-56ba-b2cd-6e0a63738bc2",
      "id": "CVE-2008-0128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2008-0128 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fae8af18-689c-51f0-b19e-23b80848722e",
      "id": "CVE-2009-2696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2009-2696 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:327fb61e-1683-59dc-aac8-f9e5b3608278",
      "id": "CVE-2010-1151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2010-1151 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12248fe8-b7af-5433-a127-5dc335548a37",
      "id": "CVE-2013-2185",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-2185 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a96722d0-9b7b-5f17-a78d-8ff3d45feccd",
      "id": "CVE-2013-4286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4286 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b272bf0b-c635-52db-9d97-b0b9f677f394",
      "id": "CVE-2013-4322",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4322 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:462b16de-893f-58de-a9a5-5cffda54970c",
      "id": "CVE-2013-4444",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4444 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7daab36-141c-5adb-a69f-6cafb7257fc6",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00f03b72-c50f-5a16-9ba2-dfeabf6e53cd",
      "id": "CVE-2013-6357",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6357 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:755d8890-6785-5611-83d3-ec0634e763b5",
      "id": "CVE-2014-0075",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0075 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4fbb991-5e8b-5ace-b53d-c68849e84df5",
      "id": "CVE-2014-0096",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0096 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc8027cf-c608-5e7e-91eb-e4d90930801c",
      "id": "CVE-2014-0099",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0099 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3cbf8c6-5a21-5c64-a0e1-e1c26745559f",
      "id": "CVE-2014-0119",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0119 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8778f11b-f6f2-57e3-81e2-24ffe9d57ca4",
      "id": "CVE-2014-0219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2014-0219 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65ed571e-8bf0-5151-95a0-a1521cad9f3e",
      "id": "CVE-2016-8735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8735 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c88bc63b-ffe2-5c96-900b-e06ce57fbef7",
      "id": "CVE-2016-8750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8750 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c824d03-f592-51ff-992b-efef7fcf5c8f",
      "id": "CVE-2018-11786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11786 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e68d99e2-3ec6-5c8c-b8f0-197c63a3bee3",
      "id": "CVE-2018-11788",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11788 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4992449b-93ee-5b21-a848-db020ce49ced",
      "id": "CVE-2019-0191",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0191 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ebb45eb-39a1-5eab-8b6c-f68565cc5a38",
      "id": "CVE-2019-0226",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0226 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54994fd9-a7c4-5353-a948-262c24445322",
      "id": "CVE-2020-11980",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11980 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:807cf410-1d5c-520b-a729-4403d152ab83",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.cxf:cxf-integration-cdi 3.5.11-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e45ff95a-c589-5aa1-99db-e49af1466171",
      "id": "CVE-2021-41766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-41766 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:356d1b91-3e01-52d3-b06b-9c893c82f626",
      "id": "CVE-2022-22932",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-22932 is a false positive for org.apache.cxf:cxf-integration-cdi 3.5.11-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccbe5be4-60d9-552f-88a6-2ffe95a37f18",
      "id": "CVE-2022-40145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-40145 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:898376dc-dae7-53d8-8941-515ffa3114da",
      "id": "CVE-2025-15104",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-15104 is a false positive for org.apache.cxf:cxf-integration-cdi 3.5.11-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5d0bd01-f481-5915-abce-77da9bdfe5b5",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24813 affects version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0be8628-24be-5f52-b27b-b9f7152bbfd7",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.5.11-tuxcare.7 of org.apache.cxf:cxf-integration-cdi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf/cxf-integration-cdi@3.5.11-tuxcare.7"
    }
  ]
}