{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:67d614f4-d7f8-56b1-8a69-7422e231153b",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-native-image-client-runtime-init",
      "version": "4.1.63.Final-tuxcare.5",
      "purl": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:fe58445d-c1e5-57ef-947c-149441bb001b",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c12c7f71-f80f-5a02-810a-0048033bb9c4",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8362745c-0cc8-5b4f-9fa6-409d2a5b805c",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4509e18-6a2a-5b27-9c26-23989ab50331",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:312cd769-34f5-5b21-8766-0890a25b760b",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7167e37-c31f-5e9c-903f-a7e2f4798c85",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41915 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f5f3616-9cd6-5c4d-838e-f6a375d2e846",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c42a252-2c1a-5c57-8556-d0a60dbccd4b",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26e48376-ea13-537d-82bf-c3ba982cbb0b",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-native-image-client-runtime-init 4.1.63.Final-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb5f23f4-531f-58aa-86dd-f86d115cdba8",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0919eaf-f3cf-5920-b00c-a5f0eda6b8d7",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:964efab3-34cf-5a29-be49-0864283bdb98",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74a6a00e-7656-5106-a9ec-089fbcf1503e",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8c326af-bba7-575e-8114-caf2303292df",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1c74a32-e9fd-5be9-afcb-70dd0052488d",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2b1ffaf-8f3a-53a2-a666-867afeae0a43",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8db861b4-74eb-5292-b42a-b536676502ef",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79125965-1da9-5e39-8882-251671bf6840",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e1d5508-177a-5eff-b5d5-83c48871f130",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:428509a5-8b6d-55b6-a1b8-f2fa46fef194",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2defd5c-5005-53bd-88f2-90555a3089d1",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff455d1a-d77b-51ad-9fc1-5063f4db1ad6",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d3b7204-22c7-5b45-ae92-25663adb51dd",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37932d01-f788-57dc-9785-cd77c49169db",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42579 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:842bf893-9cae-558b-b351-17e2382d4694",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad58f206-9975-50bd-869e-eb5b48fc1f1e",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ed64a33-a5d3-510a-87da-b2d77f790856",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2a00fce-cf8a-52c0-8a6c-62523d7539b6",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2043a12-7fa1-5a92-bf94-140bed377f80",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e769b0c0-c341-5fa9-b82c-91f26c89d4d5",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:857dbbbb-01bc-5efa-b13b-d9d7f512a07c",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d06aba56-3337-5a5f-9e56-8400b10afba6",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ca9191e-f61f-5e2c-a6a9-94139422fde8",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57a36f9d-46ec-5a3f-8003-f3db483eca39",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a9567c5-43e9-51a3-b895-835e4a5490d6",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5dba195-ca14-50b0-b4d4-2f2e9a7bbff5",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e85c7c78-ea16-5555-86b1-96397d412541",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e45bcaf-dbdc-5adc-b2dd-478a7353a663",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2619d7a-6905-55c9-ad31-958e91a72be9",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a271def2-7879-58d0-9c03-368d12d6656c",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17704348-9266-5cac-8d12-97e86ad3d5b6",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-45674 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3157b01-6484-582b-a778-18ad34eed0bc",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:078df20c-8bdf-5517-914c-f015ffef3408",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ac7ab5d-ce30-5f60-9ce7-38defbfb1819",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c0cbba9-0255-504c-a94e-3d0dd6dffa68",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0afa7cbd-fd7e-5602-8449-b70dfba66494",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48043 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a64494e-66af-56a4-a57c-ef9b93e34421",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b607a0f5-4f37-5d89-9140-165300627d80",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64aacde7-37dd-5107-b91b-29d86c6f91da",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc9bf631-b6f6-565b-8fde-2648c0df383a",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14f6d490-57b1-5f07-b991-6d54d2fd937f",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c25987c6-1e39-56c2-8206-0afbc5aff976",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bed74062-1a90-515d-a896-aaa05dbe17f7",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84b30011-563d-5f55-ba6e-d795a2077a88",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:705ba570-710e-5aed-a6d2-e1086d132e8c",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdc8d40a-a125-5f93-9155-2de61a20da55",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a23f1247-3e07-54ac-8e82-953f88482b4b",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56817 does not affect version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init. not_affected \u2014 The Netty codec-xml module contains XmlDecoder, which instantiates an Aalto XML parser without security configuration (line 38: new InputFactoryImpl() with no XXE protection). However, this is a library component that Netty itself does not use in its own production code. The vulnerability only manifests when downstream applications explicitly add XmlDecoder to their Netty channel pipelines. Per..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c3eb4f9-4e69-51e0-9072-b4688bfe036a",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56818 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fed899ff-e953-5a16-817b-a70803f3a7dd",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abe7b32c-38b2-5bea-a7b7-96c02f588023",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12c35d18-2ff7-59a6-93fc-8e8efbc8e555",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e781d05f-98b8-51f4-a434-7ae1cc59d00b",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dee5bfc2-9c55-5bc3-814a-0410df348cb5",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d4709ea-a739-526d-b97d-3f4cf6375f5a",
      "id": "CVE-2026-59902",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59902 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:047db87a-eb9e-526b-be43-d1ed7a79fc07",
      "id": "CVE-2026-59903",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59903 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3fc929be-0d6a-5af5-9966-fef4834c3f21",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d626fb92-94b2-5f3b-bf45-52b51b93e770",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98c52b09-dd90-5bac-93c5-cd2d7066c07e",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10cb7261-622a-5e91-b96a-3aea5dfcfabf",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc3079f6-f846-5538-9b83-76e33ad2bb9c",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e15d88d-62f6-5d61-8d2b-a9c951e9d3c8",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:115b8e13-ca9f-51a5-80d7-3fe6c5b46dcf",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1802a852-4033-5a09-b99b-d95a5c5f603b",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-testsuite-native-image-client-runtime-init."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-native-image-client-runtime-init@4.1.63.Final-tuxcare.5"
    }
  ]
}