{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4d68dd39-d8c1-55fe-a78b-3a5e0729c7f1",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5",
      "type": "library",
      "group": "io.netty",
      "name": "netty-transport-native-epoll",
      "version": "4.1.63.Final-tuxcare.5",
      "purl": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:072e6de7-eaf2-59f3-94f3-7c4921ee2bc0",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19432684-091a-51d0-aaf5-4bc340c21ee4",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:521664c7-a71b-598e-b1ee-04e14d5f3f56",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:727837fb-fa3e-5b7d-9907-095a8cb2c7eb",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2857c4c1-e68b-58e9-bcd9-fe5c92f7a087",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b70dc44e-566f-5f29-820f-2a381d3a7424",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41915 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6ad8559-1a46-505f-96ae-31a7691c5ec8",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca9111e0-2d5e-5caf-9c9b-8da7dabf1c48",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66f7adea-5571-5f8b-aa3b-db4dc5bf7e10",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-transport-native-epoll 4.1.63.Final-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87837237-576c-597e-b4fc-9deec1cb7230",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:367dfaa6-8ae7-5c75-8aa1-88906b6df084",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32dff8fe-434b-5272-98a9-d002cdb31396",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3abd3791-9e9d-5706-bce4-102411a9a689",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17a6b34b-7d1d-575a-8dfb-798476f64786",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3488392f-71fc-539f-a4a6-6837632c4aab",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cc08606-af97-53ae-9b97-5a462ac30268",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2d13ab2-64d9-5f7b-a79c-c0a449c3a72b",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:869fc646-4938-53e3-9e31-11fd16693de4",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f4e85cf-f484-5699-bb80-2531f3eda926",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc8cd750-05a6-5bb1-b49b-b9d4e4448fc2",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b0d7e08-b429-5551-b609-34059314c654",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e417b0fc-fc50-5f90-9fc9-a8aa0fdeec76",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5721c146-ce79-52c6-a4ec-f106ba10181c",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ecb5a85f-1fac-5c04-9d3c-2a3a80f0c319",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42579 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d42cbe02-760a-55eb-b9ee-f5e13538c3de",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5328193e-2bcf-5cd4-a2eb-6722e872cd7a",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8dc287f7-d42c-514a-a962-1eefd4626a34",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ef16c31-e5bf-5e6a-9ee4-029311bb7b45",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9033f6b-7982-5c86-8ea1-1b828c72c9fe",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4956646f-9e7c-5e1a-baad-148a30a2ac5c",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48613619-d3c5-5c0b-a0ad-91e9c0656fb7",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6068d816-994e-5fd1-b62d-b5cd3a9a3935",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6be067b8-ad86-535e-b52a-eab5357236c2",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:542341be-c18f-5072-9f71-6ba0b883c05c",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13165b95-aacc-53ac-be80-062d0d9960a1",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4dc59ae-a203-5649-b814-0a584f0b62ad",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2da5bacd-a239-5791-a96c-85d49e38b893",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d7bb203-f19b-53a7-9f11-ef4d3d2117df",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8f8f58d-b88e-5b3c-a5c4-bd93dbe0c68b",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e743359-7c75-5ec6-985c-dabda54e20b3",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db7bce47-8dda-55c4-9eb0-41d92e79df0f",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-45674 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02a31e78-caae-5ce6-b38b-252401c7bf21",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d0acfe6-bf6f-5014-9ce5-68f7c2982b4c",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf4e8f91-b7b4-515a-a273-18971c1bc0d9",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21cb037e-a749-55c6-a0af-832a5af12d4d",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f591244-f81f-509a-86db-9f2d954e6798",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48043 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2034ca7-53dd-5160-a24a-cb15191bcb66",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f3b6b4d-88a5-593c-9afa-d1c964c0fbc9",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8282bbd6-b2d6-54bc-aaba-57415d4df9c3",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d7b17b2-044b-5227-aa21-16d7f1edad30",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d64d30d-259b-5b1d-be3e-e5f78940eaaf",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5452d502-bd0f-5589-84b2-a7cb2f6a2f74",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31b7d79d-79b1-57d8-9955-c3e737d5069c",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c61bf22-8432-56fb-b090-5f14b903f2da",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc4010a1-3fc3-5e31-a3bc-251211a418c7",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:681b71bc-fa0f-56f6-a01f-6ecbcfdd04d1",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a12bb11e-33ac-54a8-8a39-78300d99c11a",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56817 does not affect version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll. not_affected \u2014 The Netty codec-xml module contains XmlDecoder, which instantiates an Aalto XML parser without security configuration (line 38: new InputFactoryImpl() with no XXE protection). However, this is a library component that Netty itself does not use in its own production code. The vulnerability only manifests when downstream applications explicitly add XmlDecoder to their Netty channel pipelines. Per..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc028cfb-a664-5b43-9787-18e428ffd67a",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56818 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cd4c58b-9a7a-5232-984e-9a6b844bc001",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d243311f-cbb8-54c5-9300-a19e2c2ccf62",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80792b21-1660-53e1-9f28-3c4512a1162d",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca02bee1-ad23-5df1-a16d-d764a50bab4a",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f01f08c8-19e3-558e-acef-ede85321dfb1",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2766526f-57f0-5b2d-80e7-002c9b02be4f",
      "id": "CVE-2026-59902",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59902 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70862ac9-bcad-5176-aab9-e61a24264ed0",
      "id": "CVE-2026-59903",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59903 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8218ace-4eae-5be7-a42c-be7353efebe2",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3d8038c-5267-577b-9fc9-8b7ebbc991ba",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed0642d9-02d7-5e57-98ce-1a71f2a30802",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19bb2795-a74e-5a84-b94a-ff304f5e49b4",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f1cbf2f-27c8-5ef9-9fef-9620a0a9a3ca",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66c6607b-7342-5a1d-9b3d-ae58d5070f1a",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:810423ea-7af9-5cb3-a301-6fd2d93b68f3",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0b3095e-e41c-580f-b635-d4ffab2dd16d",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.63.Final-tuxcare.5 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.5"
    }
  ]
}