{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:55d81191-7dc1-500b-87b8-d300f759690d",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-stomp",
      "version": "4.1.73.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:0f12ab89-c737-500f-9fa3-236d8e3248dc",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb35b688-4a6d-503a-ac93-74db72ef0fb8",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5edd148-f0c4-5d45-ae4d-113b6d7eb5cd",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d26c7b7-af36-584b-9767-a353e54934dc",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6711135-1c53-52d3-a169-f37a33656077",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64e69da4-7658-50b9-81ee-6813185ef566",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-stomp 4.1.73.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6114e390-8739-5e97-bff5-a79e965513ba",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5d77c98-7f92-580b-bfa9-0f4812735999",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49fd0dd7-787c-5533-9881-7b2ace842603",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f74a4c57-0921-53d5-b4ca-5428a2e2b02d",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de742d02-9031-5095-8165-cc588912c360",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5656ded0-f485-51c2-99d9-d000a87726fa",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4499c330-eaf0-5616-93b4-33155c328c9a",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f2ef6c6-4f8e-5651-b69a-a01d4bffbc78",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:281a4457-49d9-50a0-968d-32feff8a7744",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:520a214f-3309-5387-a16c-bbfa4fb20d6f",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f66db1b-0c7e-54ad-9dd7-61d4b0a4f1f2",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:118baaa4-004d-5624-a31d-33855014c443",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01b67b3d-36fa-559b-b527-b9b97990c4b1",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45474087-c6b9-5b0c-b7a2-c483a364c7e9",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c50815fd-f03b-5e0c-84b0-f49ad1a8995a",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cca77ed-ba4f-5141-b323-ab18f034358c",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7d5eca8-d86d-5102-aa8d-6fe46a407d6a",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88898aca-99c0-5816-b7ef-fcc8b45edc9c",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f4bab66-706c-504f-b1bc-1afaf67d89c3",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2aa9a784-6077-51c6-80f1-04f1c628e1dc",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0724e53-4d00-5f0e-b19d-c08a1eb5039e",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed45e0be-0129-5538-ae09-b4ea1cae4ba9",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:388e8288-edd2-5237-9d2d-21970adc2bf0",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebbb63b9-a014-52f2-ba78-105c8ffab45f",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4fcd1682-0712-5fe4-948a-449671306e22",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db05820c-3813-5cae-afe0-a08fa0ea25b5",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca19da36-6673-518e-be86-28307510d8cb",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:185d9a15-ddff-5a9f-8f6d-ccd53c713d44",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67b5a015-7bac-572d-87bf-c946d7dab354",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:812b05a7-2b73-5baf-9679-72ec89177cad",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5b08c90-f771-5f0b-97b6-0aa858eeefba",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:006d0fdb-481a-5ef2-b43e-832878563b82",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cfdf3623-1e8a-5f49-a90a-f8a25f5841cd",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8dd4a3f-9801-5d35-b00b-7ca7de8d6e5f",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8430412b-38f2-5530-a415-8185ea8d5ec0",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08ed2bf7-8879-5e18-9d25-edb7032ead3f",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc7ba87e-e782-5773-b70e-d771305d39e4",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp. not_affected \u2014 Version 4.1.73 is not affected by CVE-2026-48043. The target uses a loop-based architecture with try-finally protection (introduced in 2016) that prevents the buffer leak described in the CVE. The vulnerable ChannelInboundHandlerAdapter pattern that the upstream patch fixes does not exist in this version."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4c2bf98-d9c9-5905-9740-6380a69235ff",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2364ce7-b619-5df6-a8e1-4a6152057fbd",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be3c714a-20c4-5b58-838b-46532bd7b748",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ec76f75-c312-5962-ad11-9af21d88a493",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ad55ead-ac5a-554b-81a9-f0502aac323c",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5cb8903e-2e11-51d7-9f6a-c009d8f44064",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8544d34-d0b0-5f42-a885-b0ad243600b1",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ab6ce37-b547-5416-9348-f3326dec2d74",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0bc1b75c-7af2-50b0-b912-1257d9373343",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fdaf8a2-78cc-56e8-aa7f-fd7ac3fdceee",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d64102c5-aab6-5af8-ab2e-6e34f35c2c49",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:574540a1-4ce8-5383-bdae-84ff0655aa3e",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:152be930-6e29-5835-a338-a943e903c06a",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:193ae35e-0bfa-5fde-8a54-7e0b73952866",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ade7df5b-fe13-5ff1-b44c-8374a51ecd55",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00e9f200-2b31-5513-8cb3-9f2a2a96ccbb",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7775de35-6f9e-5d2a-940c-bfcebcdde171",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a9962f3-c7f1-5bd6-90cc-2fada0a6506e",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7b758db-e87e-5663-8b78-e809c2f7d3d8",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:206a37c1-10d2-5f10-9439-a0b09c38bf0b",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21ebb45d-6b4e-5fc2-8203-c7d0680bf812",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.73.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.73.Final-tuxcare.1"
    }
  ]
}