{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0c49f377-51c9-5f48-82ae-7972ca432437",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1",
      "type": "library",
      "group": "org.apache.cxf.systests",
      "name": "cxf-wsdl-maven",
      "version": "3.4.5-tuxcare.1",
      "purl": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ce1629b3-01df-54f4-8898-14e99b6c89ee",
      "id": "CVE-2022-46363",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-46363 is fixed in version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b85ee2b0-f467-5dd0-8ff5-be3c74ce9093",
      "id": "CVE-2022-46364",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-46364 is fixed in version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc9f7b32-bbb3-5f9f-bc5b-50e3ebc7f82e",
      "id": "CVE-2024-28752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-28752 is fixed in version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:915f34c5-b341-52e9-953a-738b9d8a3551",
      "id": "CVE-2024-29736",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29736 is fixed in version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f6900c1-9fe8-50c8-b6a7-1a22999151e4",
      "id": "CVE-2024-32007",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-32007 is fixed in version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bab2e53-d69a-5077-bef9-42db409cf4f4",
      "id": "CVE-2025-23184",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-23184 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83b6cf58-ff86-5781-ac5e-188830892832",
      "id": "CVE-2025-48795",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-48795 does not affect version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven. not_affected \u2014 Version 3.4.5 does not contain the vulnerable code path. The CVE-2025-48795 vulnerability exists in DelayedCachedOutputStreamCleaner class which was introduced in version 3.5.11 (September 2024). Version 3.4.5 predates this component and lacks the leak detection logging mechanism that causes the vulnerability."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d465a846-3fca-5770-85cd-ab3c79b0f724",
      "id": "CVE-2025-48913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48913 is fixed in version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9b13df0-fb35-5510-954e-e7cf9348cbf3",
      "id": "CVE-2026-44417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44417 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:506777c7-869f-5d2e-8be7-7719ec493923",
      "id": "CVE-2026-44618",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44618 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d49e380-1006-5041-9e0f-ae5fda304be6",
      "id": "CVE-2026-44930",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44930 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30fc350d-3a15-5ab9-9bf4-d778e107fc5f",
      "id": "CVE-2026-49875",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49875 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64302782-c4e4-544f-837f-7e2549bd1a42",
      "id": "CVE-2026-50623",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50623 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:715557cd-b659-5184-94c1-6a5c62619bfd",
      "id": "CVE-2026-50627",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50627 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bcf7bd4-9c46-5f16-b41c-162c45eef4d4",
      "id": "CVE-2026-50628",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50628 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8352c44-7316-53f9-ab28-85836f3adf32",
      "id": "CVE-2026-50629",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50629 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67a9253e-eeba-59ae-ac0e-cd9940926411",
      "id": "CVE-2026-50630",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50630 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:215f2223-7306-5631-a2c8-700f71ceb790",
      "id": "CVE-2026-50631",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50631 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ade70807-bcad-5fbd-ba16-45fea7028582",
      "id": "CVE-2026-50632",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50632 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:772b0af4-494a-5ddf-83ea-43b4bb3ebd6c",
      "id": "CVE-2026-50633",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50633 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:371412c0-8cca-5e95-8339-8c0ec37b7d7f",
      "id": "CVE-2026-50634",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50634 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7deb5750-ade5-52c1-8d18-c2bdca562e9d",
      "id": "CVE-2026-50645",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50645 affects version 3.4.5-tuxcare.1 of org.apache.cxf.systests:cxf-wsdl-maven."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.cxf.systests/cxf-wsdl-maven@3.4.5-tuxcare.1"
    }
  ]
}