{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:40b2d93c-343e-5ab5-aeb7-a61a6d9f078d",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler-ssl-ocsp",
      "version": "4.1.92.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:bd7252d3-5553-52cc-b8b0-a2c29325be90",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:142e10dc-30b8-541d-a435-f23cf9c22cbc",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de1cde37-d351-54c3-9723-a1cd701ffd19",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-handler-ssl-ocsp 4.1.92.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bc736ea-7ecb-5af9-a25c-535d6ab02e13",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c59e4680-df5f-5ae4-ac29-7e219bf219d5",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be82a31b-027c-5f2d-8c19-e12c3499a3ce",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:742d5e58-f162-5fae-8639-5bd1d81c0619",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d698776-d7f8-5111-a34f-3ba5655b1184",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34ac5630-eba9-5429-a494-faedc2028d54",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e43aac1-d4c0-50fc-935c-3b08cbac57f4",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb4a5e49-be3e-5cb5-ad3c-28c0f7d4ddaa",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b71352e-d7ef-5c93-82e4-85e527e713f1",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3902629e-4b4b-5473-9860-2fb6b9052fd9",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43f3d28c-1bcb-5b65-87f1-5bcecd976936",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2efe77b2-a75b-51db-ae71-bcf3d1487a29",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcb7d3ab-b262-54b6-9f72-704fdcaa60a9",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b83f058-e97c-55ec-84f0-c28c223396e8",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1f3a8e1-278c-5139-bb5a-ed8bfa224c8c",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c15a0f2-88c9-5ccc-8bec-a84a8600ed07",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3b9ef79-dca8-5ba5-9d44-0756f7f3e78a",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b933b068-d0c1-59d0-9244-ebb1a13fbf45",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63624a8f-a15f-55ba-91f6-1119b880a21c",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1281494-8a8f-5186-8dd9-7f1e476b9645",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e71f1046-84f9-59f7-804a-92d1829c3d55",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdf16df1-d2ad-5f1b-92f0-a4d718f96f2b",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ddeca97-7cae-5fdf-9e83-8ffa1641004a",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d719c37c-18a7-5e07-8f09-5f010193d281",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64f498b6-8324-5cba-a10c-a6fc17c63722",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:884818c5-2ebf-5bdb-b830-842dd8d7efff",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5158e7d9-3774-5c35-8c40-5eb98efc8f09",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7974707-3568-505f-9191-722c1ff42d0b",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5748ed8-000c-5474-9f33-37d392db2796",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:922a9c3b-88c8-5a5b-8db2-d6ae89fd2fa0",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd812335-2b2b-5468-9747-189f84522704",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b74efb1-65fc-5ef2-9db7-c7920857b7b0",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c09de15-a21a-59c1-9ae8-1cf8aba65ed6",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0ee4ac5-fe97-5d37-b769-110634b476ea",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13f05b5a-c997-559f-8d5b-b2557dcc4fe0",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f86fa3d-59f8-5be6-b869-269e4342172f",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac8a7039-6200-56e7-8455-f9877b0fe213",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp. not_affected \u2014 The target repository (Netty 4.1.92.Final-tuxcare.3) is not affected by CVE-2026-48043. The vulnerability exists in a newer architectural pattern (ChannelInboundHandlerAdapter-based decompression handling) that was introduced after version 4.1.92. The target uses an older architecture that processes HTTP/2 decompression directly in the onDataRead() method with existing try-finally protection."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4c17704-3064-5522-8075-7c966120f81a",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96275a7e-d0c5-5bd8-aabb-3179174e6aa4",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b24b4fdb-4940-5a42-9c7e-917f240568ef",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb609107-bd23-5009-970b-bbc0d14e5942",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0455907e-b7b2-5167-898b-d9382fafa108",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c61bf06-8bc7-5a6a-b02f-35250aa905d3",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e39d8ca7-538a-5968-b712-e88a1270338f",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee866629-b4dd-5b59-a3fe-69cdc058db5d",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e13c0554-2485-5cc2-acd2-04b8343ff968",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88dd34bf-12ac-56f7-9d9a-3b77e95c0230",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1f40742-893f-56b0-a7cc-aa516c85fc38",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd5d8be8-9d53-5f16-ad20-c156dc955a34",
      "id": "CVE-2026-56820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56820 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57b281c1-2fec-57de-be35-5cf85960f9a4",
      "id": "CVE-2026-56821",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56821 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91c60275-0c60-51d1-ad97-c2cb74df5b92",
      "id": "CVE-2026-56822",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56822 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc32fc55-388a-57d4-b112-b59c5d41def0",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32eafe30-e493-53be-a9b3-dfd87f36face",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b42fea5-fd67-5d4e-aecd-c3ca1334c7dd",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07815f28-f2e9-5d96-97a5-b8578e1c39df",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ae471a7-ff60-5b0b-932a-b14700f2646b",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f197d04-a991-501c-8730-bb8c12af0848",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3efbe9b2-f9bc-5936-ac29-e6858b154a17",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54fe5735-8614-51bd-8c08-1408a44a754d",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0abaceba-bc62-55cf-bdae-5d700662b3f4",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16734c77-f49c-5a43-8ff9-897d71710a9f",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p does not affect version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler-ssl-ocsp. The version is not vulnerable. [terminalized not_affected from patch_application_manual/not_vulnerable]"
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.1"
    }
  ]
}