{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ac92c425-4a51-52dd-b00c-4d8038f726c9",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler",
      "version": "4.1.49.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:3220674b-a1ad-5709-aeae-b66aba46ac38",
      "id": "CVE-2021-21290",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-21290 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cf6db6f-f737-5cf2-bc15-884058219f8c",
      "id": "CVE-2021-21295",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-21295 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85bee7a0-0571-57c2-a178-9bdab5aad919",
      "id": "CVE-2021-21409",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21409 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e660e29e-3da0-568b-8635-126776ac3e46",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40c4e603-4dbb-5f46-a90d-eb2f055e8293",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a15b4781-bc55-5aca-8e06-02f402a155d7",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6968313-9c62-5dfd-adad-99ebd3f49ca4",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:788a3c6b-354d-592b-b4f5-db07cb98272e",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41881 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c05fd98-6837-5351-9174-a50515ace75f",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b466a5c5-8dd2-5d9c-b6ee-846e08404492",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:200316c2-e35a-562f-bff4-ebb009f5109b",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e678f16-0398-53a1-8fa6-760b021f0917",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-handler 4.1.49.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d4cc83d-12b5-5250-9c59-791f373e8de2",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19d11c76-942d-5b02-9da7-cfcde1df688d",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-47535 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14c46d8f-7ec5-5dad-98d6-d47218165366",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf953f1a-1dd1-571d-8de8-a83a32b13ee1",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d076b8c-246d-5018-9212-5a75c9497e6d",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:812f4b43-2037-53cf-9dbf-6ce54158a837",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97a5587d-6ea0-5834-af16-e0519968c481",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f399840-231f-538f-a1a8-0aca34f037e8",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-59419 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c35f7051-ad94-599f-b6dd-303ce23c7fdd",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31a4e69d-d3a2-544e-80ea-27990d378adb",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad4ddb86-4bb3-5a2d-b460-6c8efc8b671a",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4d0a553-8e85-5469-82a1-b6469454102f",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6adc8de-3884-525b-8fa4-6c5085ae556d",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b4df367-023e-5712-96c3-9bad66604885",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb06fccc-6fa7-58fa-affa-213ca9ea6a5b",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d51145f-d701-5033-86b5-7d4c286f8538",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2eb83528-5ca3-51e6-85a0-1a1fdae38f7b",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14266225-7e20-5115-82b1-69a2585c01e5",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:162e06bb-ba1d-5478-9abd-320bf79e7af4",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e3066aa-c36e-5e26-a1a6-fc18dc45e626",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc5ae8d6-d621-50c1-9c70-31c050ca139e",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9abc6122-a387-581d-b17c-a8b060e3e025",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0025afb8-5f4a-5662-8a58-044c90ead2e3",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79cdb762-3256-5e72-8640-f21d0662b3f7",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-44249 does not affect version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler. not_affected \u2014 The target repository (Netty 4.1.49.Final-tuxcare.1) is not affected by CVE-2026-44249. The vulnerability exists in the IpSubnetFilterRule#compareTo(InetSocketAddress) method, which was introduced in version 4.1.52+ as part of a binary search optimization (PR #10492, merged September 2020). The target version predates this feature and uses a simpler matches() method that correctly applies the s..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:312fe087-99d0-5e35-95b5-5c7813eaf83f",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3896768-b0cc-55b5-a1d5-1c6da29c22a7",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3728006c-107e-5adf-a11a-0c9e4607af05",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25f30017-6cb0-5fcd-a51a-36fba9a3f6aa",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9e352c7-b83f-562b-a008-cea979bc77ef",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51bdda28-c13c-5c09-8730-db9c8984bb76",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07764e68-4bda-5e7f-8569-005ba39b8e99",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90578e98-1c25-53c6-b141-4c544af5d496",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c303b9c-5b2e-540b-9882-fc8fa6bddec2",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f8ade19-837f-52c6-a1c4-7f0176cab79e",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aa181b2-562c-5a16-bda0-06c6d6adcfa1",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:402cbd52-f997-5f71-9bd8-0a16cc004562",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48519ba8-2fe6-5110-95b2-661637cc6d0e",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48043 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c67cdef-7f40-5719-970d-3ecdface200a",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abcbba6e-218e-5b34-811d-cad487775bf0",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f34bdf63-3e32-550e-9d38-506babe871fa",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdc8e520-eefe-577d-9305-be8b39bb7294",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e530e4ac-eea0-5b5a-8966-5fcef2500b39",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0703f11e-d32c-56e8-abca-e3d0f0ff3bff",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b7414df-d573-5ccd-afe3-56fe9aebb1f7",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dda94605-85d2-53ef-a7d4-8fb70bbd243c",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:724e61ce-f3e1-52bb-b459-e92b35c47cb6",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32791408-74fe-57cd-8e4d-2ca820c2b99d",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b1b9341-8e3f-5e99-8ff5-6820751e9079",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c062e549-de25-5111-aa88-f82331194a0f",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3441a9a-79fc-5ceb-a0d0-71fd2cb61e37",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:581f341f-9e0a-5b0d-9dfe-fddc4ebb3b7a",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:055d4bbe-7d28-5dc4-a9f3-8c7cf222ba3c",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0df7f4b1-65f8-5464-96d3-2071985fb571",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eed64822-cd65-59bd-8391-79f6d97420ae",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9813c8d1-a0a9-5098-919a-61fa0540ecb8",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33003d4b-e82e-54f4-bca7-a11e3f3a8577",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63a15bd5-e62c-58d5-af06-e51da8a09453",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fb459ca-60be-595f-b22b-b5cf553545b3",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.49.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler@4.1.49.Final-tuxcare.1"
    }
  ]
}