{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2df96758-5bcd-573e-875a-ca7a8e7ae24e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-autobahn",
      "version": "4.1.73.Final-tuxcare.4",
      "purl": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:61cb2ef5-af21-57a0-b140-efccdc6cd50b",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f79a95f2-c27e-5f72-a19f-601610b5de45",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74cabda1-e884-5e9b-9042-7f753bdca22b",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f96a2293-2b93-5197-a6fe-3f7be1c932eb",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15e76f66-32c2-5392-be99-4d27c28b22cb",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61fb2144-3dda-5844-9533-35264cbc05a2",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-autobahn 4.1.73.Final-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cad6846a-da0a-57ca-8f29-94eab48eb673",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa05f56a-2127-521e-b39b-e8a60746f2db",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53582f4a-c10c-5b31-87d9-caca50f55dd1",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8b4b852-4bfa-5d5f-b74d-5dbe24864e6e",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:023d0bd0-8fbe-5924-a057-b6451b224af4",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be773713-069a-5292-a2c7-b1ac4c06eb01",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f0f64e2-6cea-50ff-a516-22ca1d0c781e",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e790e815-0504-5e69-a0f4-85e396693664",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8296b396-e171-5f7a-b2a2-bcde2a75e41f",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ed507a6-2d30-5ec7-8c57-565088b08335",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba809704-6a1c-5053-82ec-de0371ea1655",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93b9ed66-648b-5f5b-a187-5ca87a125416",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:414a2a08-c4b7-5d5f-be9a-9a1b14130840",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8e216cb-d654-59ed-bfd9-4d39e9c8ed9a",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d96c7880-7d31-52d5-b739-9faabb9c40ec",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42579 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5bb23bc0-c0f6-593a-bc0f-60fd9019e877",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:801397cf-c491-5698-9ff5-7c8e807eb7da",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4fe6f15c-2628-5665-a486-4fc6946a2e72",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a6b65d0-2a40-5157-82e0-1faae036d20a",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf47e84a-7475-57e8-b9eb-a97bb873ce21",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efdd5eee-737a-5ef0-ae98-f400a1349b9d",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3172e5cd-8182-560e-9db9-a4b5f8075784",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d26d0489-e1c2-5dc3-abd3-dd4a13ff8f33",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b56d4037-5bee-5896-bd5b-e3c8977a7697",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3e96329-2317-56f1-9d29-23e171a045b2",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c556f65b-a642-50bc-b1ed-581b14641358",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6b46410-6406-50ad-a5a2-af8e775321c4",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f921c8af-b706-5728-b831-d9b5c778da26",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9ed80b8-33a2-5217-8b5c-d2edbd5ca269",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4976f882-96ca-5169-958f-d8bbc4dd46b9",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:215da2c7-4663-52f6-b537-63b8b04243f5",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:760b0c17-bd02-5572-ab68-ff8a055ff64a",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-45674 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33019e31-28ea-5aa1-8fc3-103cd175ab6e",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98c04a28-dbb7-5809-8758-7df626ee9ad1",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:053ea457-8a63-55ad-8430-4624621e8a3f",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:004cb2de-357a-5ff8-9f1f-5ee76a740280",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e820aa5-fc63-5222-a061-a828d86f3640",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn. not_affected \u2014 Version 4.1.73 is not affected by CVE-2026-48043. The target uses a loop-based architecture with try-finally protection (introduced in 2016) that prevents the buffer leak described in the CVE. The vulnerable ChannelInboundHandlerAdapter pattern that the upstream patch fixes does not exist in this version."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68d92a08-b176-543d-aa8c-a2d1e66ede00",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:377d6374-3ed8-5245-b722-5d129ccfdc59",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64b6255c-df2f-5ed3-8cd5-e746372e8c77",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:279c5163-18c2-51cb-99b4-5d85b07c6203",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f7b4d0f-fce4-589a-9c95-b171aa6c4f78",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:569d27d9-cbff-5f74-94a4-c80c1e187d69",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7ae768f-4a27-50f0-a539-34131bf2c794",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed83a8c3-ff47-5106-8c1e-c16c71d2febb",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e43d5a5f-f780-5c31-9ed3-700d4cd16893",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4737ce92-a491-5c86-b7b0-77b8bce6a196",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5faa17fb-7bcf-520a-8a6b-1e4c403b4dfc",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb4a696b-a4dd-5613-9e2c-42867b2eae01",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56818 does not affect version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn. not_affected \u2014 The target version 4.1.73.Final-tuxcare.2 is NOT AFFECTED by CVE-2026-56818. The vulnerable code pattern (configurable `maxElements` limit check without cleanup, contrasting with `maxNestedArrayDepth` limit check WITH cleanup) was introduced in version 4.1.135.Final through commits e51c64c964 and 728c98b8ec (dated 2026-06-01/02). The target version predates these features entirely and does not ..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb1cd773-832c-5d4f-8ee2-f12d3c8267e2",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb32687b-c6f1-5b99-ac22-4421fc39014f",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48eec7a2-c404-5bfe-a3fa-ffb1f6acc83d",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e45b080d-ee5a-5678-9edc-d4b45b478112",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71621de5-8e37-573d-9926-cdece9324435",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c6a9867-0d8b-59e6-9a70-d36572e38d66",
      "id": "CVE-2026-59902",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59902 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ab86271-af1b-56f9-bd39-bfac5f401d72",
      "id": "CVE-2026-59903",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59903 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5c17587-4da3-5c0c-a3db-009213ee90c9",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6abe857c-5e2b-52e1-889f-58d02b9fdd9f",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:406a5319-015d-5a00-a2b9-9ed14a528c1f",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:947652ae-0621-54e5-b4f9-2ae4b088ec8f",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9a307f0-7a2c-5960-9b58-b1edc675120f",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6be58109-bd3a-52b5-a8f8-10e0fafdba1c",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d44f5d3-4826-52c7-b104-661b1b7a1b0f",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7060183-3231-552b-87ae-50804b0b3f7e",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.73.Final-tuxcare.4"
    }
  ]
}