{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d6d15c94-4739-5ba5-b3b0-d99f27a5f5c3",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler",
      "version": "4.1.130.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:c6fd2b77-906f-5485-89a9-3a655a7cec9e",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-55163 does not affect version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler. already_fixed \u2014 The target Netty 4.1.130.Final repository already contains the complete MadeYouReset (CVE-2025-55163) mitigation. The Http2MaxRstFrameLimitEncoder defense class is present, integrated into the HTTP/2 connection handler builder, and enabled by default for servers with a threshold of 200 RST_STREAM frames per 30-second window. All protocol-error-triggered RST writes route through the protected en..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebc4a2f3-381a-5a77-bbd1-1615a69562d4",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0911ef0e-3d7f-5d72-b8a2-8f343d191c5a",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-33871 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c32b4825-def7-5a0f-b058-aeb355629dc4",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5dfcee55-1cba-5646-8341-1eed635491fd",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4bd061d4-53f1-5608-a903-ff0267cbc3b6",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42579 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af45f929-8ff6-5b78-83e3-d0bc96b94a56",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42580 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fafd6352-d87d-5934-8c3f-ea1ef526f43c",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccf871c4-dd8d-515e-bdb2-a92d8d30e7ad",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42583 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17b1003e-caa9-52ec-be12-1bb71c557ee1",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a676b1d-736b-5bed-b39c-d82cc568b393",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ae8f893-cdf6-506a-9f88-778a9ec7b566",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c16ec120-ba03-5a50-be45-9ad5726d880c",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42587 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2c5d89b-421d-537e-ab5d-9753b75c6830",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e777416-9c3a-5dc5-b969-5f664f5eb6a4",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f77dff65-dcab-5171-9a1b-00f7a62ed84f",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68823f09-8f99-57ca-9e14-2cce60762ec6",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:866e9cca-697f-5ad1-9d2b-881185e091f0",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a753d3dd-1a9a-51ea-833e-47f655647ff2",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c761746a-c713-506a-b4b0-a6733b10aab7",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fd3b73c-2aac-52ef-9cfe-568d5ac01500",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70244798-4bd3-529d-949f-d2d2f134005c",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fde5ea74-ccee-599a-a941-dee771c2d026",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76095542-9c20-5437-8877-9a1e825e0f1a",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fd3a365-a3d6-5502-a866-a9c65ba31998",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48a77a13-def6-551f-ae5e-95a4972cdd3f",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a629dd7d-ff2f-58d4-b725-b5b097812189",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7fd8984-914b-5055-9ae0-88e689d2f6fd",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48043 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88eaf491-1a59-526a-a1ac-beb37ba82d47",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48059 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2dc7f0e8-4236-5af0-bb97-59b37867b0a0",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50010 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ddd9867-b3af-529a-a4e7-3ffa135149d4",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-50011 does not affect version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler. Patches already applied: bff98ee51b5d0b7ee25fd5005f2169f2a0467efa (already in target via d5b4e38845f5 'Backport CVE-2026-44890 to 4.1.130.Final')"
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e4b4855-4b3b-547c-9040-3e55af881fca",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50020 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e18a605-b208-593d-bb01-b60ff51b00b7",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d47f20ec-acc6-5a30-834d-5736f7b1f3b9",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ecdd24cb-6f5c-5868-a7d4-bee4c35c7e3a",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a49b7b2-1b5b-5a30-a1a1-55d8f1bd2cd7",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f84b534-57ff-54f3-8ca1-5871ea6993c2",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41bbf376-ac5e-582d-8282-f573bb304d3e",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:beded006-59e9-5b31-9caa-ade6ed969e25",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6723c937-0f35-546c-8d1a-4142d13ef6fa",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56818 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03245b62-be57-56ff-9738-1ab37de52f59",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:160c47f4-d405-5cec-aa85-fdedd8098aeb",
      "id": "CVE-2026-56820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56820 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80ec1e63-7185-5aef-abb1-8f8abf1d3f42",
      "id": "CVE-2026-56821",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56821 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c244f97-64eb-5fa3-9876-ee26d0de9846",
      "id": "CVE-2026-56822",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56822 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:463cbae8-cfbc-58c5-9cdc-7dbde18b8881",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d7876b4-6feb-5792-94a6-5a2fce48088a",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a91bc783-6bc6-5d4f-9f00-3ed95c4cdb51",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c20a4310-2f7e-52a2-9cb6-7c9b187bfca1",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12502052-67fe-532e-9d34-e68841db9d02",
      "id": "CVE-2026-59902",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59902 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1e09f2d-4ce5-513e-a2f5-1516c61cdecf",
      "id": "CVE-2026-59903",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59903 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:624fa86e-f44b-5c09-8152-dfc728a7a56b",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38bc74e4-afaa-5f4d-baae-56dc848b6a6f",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3afaf916-3214-5a0d-bc23-587518995b0b",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a15170bb-12f0-5425-b34b-9f2a3313ca10",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8351ea2f-27e4-5785-9341-42dd69c380e5",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c755dc9-e8e1-56c8-91f7-34c5223d4729",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e323fc9-77b1-532b-adc6-4983fef9267d",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.130.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler@4.1.130.Final-tuxcare.1"
    }
  ]
}