{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:eadfd25d-941b-513c-b385-f793b9151bc8",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-native",
      "version": "4.1.73.Final-tuxcare.4",
      "purl": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:108caa74-5557-594f-befa-ae793560fb0a",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b6ba419-23b6-5a9d-a0df-25c182f366ae",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01075e36-8590-5887-9a23-91b9a22b2061",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19067504-16bf-55d6-b2e1-cb66b981dffa",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afb762a8-136b-5d8d-be71-602af2d2ef52",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7804a60e-bc7d-5b34-b918-fbb419654c7a",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-native 4.1.73.Final-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4d9132d-9fe5-58fb-b8e7-41bf2cdd8a5c",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0a97fcd-9779-5f16-9d1c-5e3a46acc770",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b1b1cab-0298-5fa9-9254-8df8df6790ea",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ac8f759-a6a4-5223-bd78-03b20895e156",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6994b5c-b8ec-54fe-85e3-a53aabc06137",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:78526aab-4b64-58da-8412-aebf3e9daafc",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58ea0dc6-cd69-57b2-abec-371492d1a044",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc560d74-fc9a-521d-b0d3-472ff8035d25",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d6355f1-fbe8-557d-8067-68c90f53e5fb",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9eaef30-fd93-5c88-b2cd-7e1149940e7a",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe165bec-2568-58fe-b49a-70ba9ee93694",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0ac1a22-7467-5726-afb0-b9fb90e704ed",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2de49cc6-75f8-52d4-bf05-b7fb0541238a",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:564e708f-5a47-5d81-a6bc-cd6eb43c8427",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8713fcef-4f45-58ee-afbe-65374a051caa",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42579 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e61952c5-1858-545b-9726-3ccc7dd8578f",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a1204fe-e730-5585-9502-11bc61a9708b",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9c79b23-e663-5600-8de5-62d45873bcb4",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffa7625d-8162-5f7e-b68f-52cb73e5f590",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afc63dbd-598f-56fd-8c2d-990038c4cf0c",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:321539f2-0c32-5073-b0c5-1e78d8f1eeda",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48a04ca9-ed10-54cf-8f31-cc0aae4df91f",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:152f3720-b74a-55c9-8d4b-ebb74c0756e6",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3438c23-1936-53d9-87d7-1658c53b46dc",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ee5a13f-20e7-5288-8378-647ea7d0002d",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b7f1a77-3250-5bb1-8f50-9c47f784307f",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:978bd2d2-7838-5a79-8949-f102fd5439ae",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0673e201-4edf-5a22-80f4-c01d9f5d8a80",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8852f733-cec8-55fa-b3eb-96ff57d5f17b",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92805dcf-a5a8-5e05-9160-a032c44a65b0",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c56ca27d-8df3-5ac6-98d4-73f5d2694d2f",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab828fe3-56ba-55ec-a233-4dbdda86316c",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-45674 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0bc7ca0-73bb-5475-9dce-9b34c8cc4f12",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:531ce797-5114-5578-86f3-e9676c58e5e2",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67df17a9-c014-5c00-892b-056787d62cc4",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6caa4ef-b98e-56f3-bd43-c7c11f66676a",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da041825-e09e-5886-8bc0-569aabe249a8",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native. not_affected \u2014 Version 4.1.73 is not affected by CVE-2026-48043. The target uses a loop-based architecture with try-finally protection (introduced in 2016) that prevents the buffer leak described in the CVE. The vulnerable ChannelInboundHandlerAdapter pattern that the upstream patch fixes does not exist in this version."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b0bc876-d0fa-5d64-a801-48ed9da0080d",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4ad9292-4f7b-5e7d-82f5-827ce2a6fcc1",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d6711b3-7cfc-5846-8eb8-d8e5f500c276",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:009bcc90-b92c-59a6-a126-30f95cc618e1",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7d0c7a6-8683-5265-84b1-d5389f6224f4",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b98b4746-f4f3-585f-922a-6bbf49d6dd30",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1711a080-c5c2-51c4-90dc-b4fdf3f644ed",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1edd961-e3e7-5af8-9b03-45604f2e9814",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5fcec3a1-8934-52e7-8caa-2d6fd41ea7c7",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d60c00f3-8985-554f-8fe5-aa2d81d67446",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db50eb1e-ee28-5f56-beda-7519850c806c",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:002bdaf8-b0d8-5b9e-8dfb-f0e6bf6e669d",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56818 does not affect version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native. not_affected \u2014 The target version 4.1.73.Final-tuxcare.2 is NOT AFFECTED by CVE-2026-56818. The vulnerable code pattern (configurable `maxElements` limit check without cleanup, contrasting with `maxNestedArrayDepth` limit check WITH cleanup) was introduced in version 4.1.135.Final through commits e51c64c964 and 728c98b8ec (dated 2026-06-01/02). The target version predates these features entirely and does not ..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:765af6bd-0114-5a55-bd4e-fb108a24bb0d",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:779202fe-0e4b-5a25-9aea-e22d82ebfb5d",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:50f21cbc-a52c-53f6-9146-19b730c5606b",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab5eed45-ccdd-5c53-9d3f-80990fb19087",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81cd11d8-f0f5-5d7e-adb2-2fbab9c89108",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76165fd2-75c0-5832-b8ec-1cb9c0aabf1c",
      "id": "CVE-2026-59902",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59902 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f34f093b-9d19-5838-b6be-b429df53360b",
      "id": "CVE-2026-59903",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59903 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:490dd05c-48c9-59ac-b312-487e21ccd98a",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4121d5f8-518b-5e9d-acfa-a93ce5f92b19",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a7a2bcc-8e82-57d8-a67b-89ff050be485",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:159055be-ea76-5f3b-a78c-a62ec5dabe66",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:587056c6-41f8-51fa-bfbf-e6ff51f006b4",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1667d55-634a-5908-8bfd-6d0ef0418a94",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bbc7af27-aa6f-59b7-8d9d-67a6ed140c12",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93bf2e80-8aaf-558b-8e93-92a6749a4bcd",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.73.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.73.Final-tuxcare.4"
    }
  ]
}