{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4cc50637-620d-5475-9c24-f972d9783d49",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-autobahn",
      "version": "4.1.63.Final-tuxcare.5",
      "purl": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:afd852fd-a91d-57e6-bfb9-c96ba23bc990",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f41d082e-1c7c-52e3-84bb-7fec90840f54",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3d9ece6-4445-59c7-8d6b-7b7003a71ae5",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:040a5ae4-eefd-586b-84f8-0172c78d4507",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:646b5a1b-2ea2-516b-ba75-47a855b0a1e9",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c6bcf78-ed25-5fe7-aba1-7458328d613b",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41915 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24379ddb-cd5c-54ca-aa1b-63f35275ff4d",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7145145-3b99-5b38-a2c7-eeaf22231aaf",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99c629b7-ae7d-5c45-9529-ce9a05308646",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-autobahn 4.1.63.Final-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47ec5755-58ea-5ebd-8967-0ece46d18bb9",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1fc15d37-a430-5bb1-a987-4a31275e81a5",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9140dbd5-58d6-5296-81b4-a6036bff79f4",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87ee2b20-08ee-5cef-839f-8d3cb058739e",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b240a122-2820-53a8-9e4e-f7967603d36c",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4863b85-5e13-514d-8060-2b5cb271029c",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1053a90e-4ef4-5d6f-86db-4cc5f269a127",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bcc6ecc-206e-5b71-bfe2-93e44eafabd2",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3c83493-d470-52db-ab8e-3501d859c468",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9437f99-95f9-58aa-8569-1e01c9443385",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5d2cd6f-1f7c-557d-9319-37afa2649186",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0906f1c-fa4c-5618-82cf-10fd2308f184",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3713cc01-af7c-5e70-9d33-faa71b8fc396",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6794da7-7ea1-5b90-b549-cf09e0eeadbf",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8aa223de-b35d-5562-bb7f-94e58fff6ca9",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42579 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:474828fd-6c26-5b57-bf5d-e0cbf5fa6ae4",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32a53ae2-7de8-56df-a15e-e483684674d4",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d299697-59e6-5e94-9fc4-98e0977a1885",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a69429f-c305-563f-83d6-77d702acf35f",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5709fa2f-b2cb-591a-b9f7-4bd6f97a05cc",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90e9c010-7105-50bc-9113-4fa61f921dfd",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75a0e862-674b-5720-9db4-5d464c97d636",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0db1f85-5f31-506f-aa97-2d0c9eac9a33",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2015b321-ad55-5774-9d84-d831fcc40278",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15442440-cf9a-525c-b6d0-6cf89bdce248",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c0416a1-7c49-5e83-a325-ebeb4243c5d0",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d411ee0-a78b-5606-9ead-fcde2dd2a071",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdcd1325-f56a-5966-9cf5-88a5a85fcd1b",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:226c96de-ce45-553e-9091-4f7fe24d67ba",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:617c8042-b576-5418-8e47-7c5cb86556b1",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9b21731-af56-5e6d-8afe-7a6d8b638260",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:129d2da4-9f29-53b6-b97c-5db2d8a4abb3",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-45674 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc4cbefe-4eb1-545d-9133-ecd13e127efe",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13e4449d-b8d3-5843-adaf-f9f10646f5f5",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b898b4b6-d36c-573b-a508-34d05a7c91f5",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59c51973-acb5-55ca-992a-af21e00b8010",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15bdc2f1-d720-5431-b2e9-f7517cd2af79",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48043 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5686bdcc-6f28-5817-8676-e63b0beaacca",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0215221-4a0d-5d4b-8c8c-157c92443f21",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6af22f4-f17c-52ad-a61b-85636b836fd7",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:401b401b-fdbe-5319-aa96-c4d32861b741",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cbf4677-82a1-52e2-86f0-7b6e29a94b76",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4ed3313-6a42-5f96-8c38-83224b95bba1",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9495d02b-2ee2-5dbd-843f-ceba23a6bcec",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ca72408-a804-5094-971c-bfd10e242c54",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e1c4285-358f-580e-b00e-8ae34d90a98e",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd78f856-eb3d-5811-9e76-a87a33d5e82c",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:689cea08-c3d8-51d7-ae13-e007a7d5f600",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56817 does not affect version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn. not_affected \u2014 The Netty codec-xml module contains XmlDecoder, which instantiates an Aalto XML parser without security configuration (line 38: new InputFactoryImpl() with no XXE protection). However, this is a library component that Netty itself does not use in its own production code. The vulnerability only manifests when downstream applications explicitly add XmlDecoder to their Netty channel pipelines. Per..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf044065-2b9f-5027-9071-933418f9c325",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56818 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c586d485-5500-5ad7-a006-516027611d93",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8142b314-20db-5f6e-95c2-0c929c668010",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bc46d6f-02ef-575e-bce5-b255065230f4",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abab1c4c-fe23-5e32-ab43-b7501e578f54",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc249c79-e4f5-59f7-8390-b347ea91d438",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a8471e1-7e3c-5ebf-bffb-06c198d6da7b",
      "id": "CVE-2026-59902",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59902 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a1c89a3-5d81-5aee-82ec-93ad7e0c8f66",
      "id": "CVE-2026-59903",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59903 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65178f6c-7302-54c9-ad5c-00f91adf5ac5",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90a15a2a-2ec1-56fc-975b-b25e4d911529",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11614656-70e0-577d-b9de-dbf730ad0a49",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdcc505b-989f-56ad-a0e8-a879cb122d94",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a61b0506-4ea9-52b3-a919-621b71a1ee9f",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17d9f40a-8bb4-5d17-85db-e08db77f0c47",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9becec55-da83-5a7a-beac-d9d535638751",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:183d0e61-8654-5429-92a0-b1b821656a8b",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.5"
    }
  ]
}