{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:dde38b78-f947-5228-b3a9-867193a35f0c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler",
      "version": "4.1.75.Final-tuxcare.2",
      "purl": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f8b909c8-5d24-52ef-9752-efe847e5323e",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43b65dac-060a-5913-b89d-755a49febd3a",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59f65b55-a01a-5531-b13a-1492644905a5",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be117ea1-8e89-5f93-9c57-80fdfcd14432",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69f8eec6-99a5-5174-9da7-d8488fdc1aee",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a823863-43c8-5ab7-b612-374f808a96ac",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-handler 4.1.75.Final-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:864c1b1b-bcaf-55e6-83b5-b784035b8461",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44d7d7c0-d0bb-5ba4-8a19-06805a3ed03c",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d28e0f81-5c2a-50ae-ac04-62c12c38593a",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a245d810-27e8-5ad0-90bf-8a335f7af485",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ef2b45e-82f1-5c41-97a1-bfd19a84c4f8",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b202ac6-03c7-5282-a0ad-d17346a80890",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2e85130-e27c-56a0-9885-525c5d0f872a",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1fe31ed8-8329-5d8c-b120-215e575ae0ba",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb5bca65-a0d5-586c-ac3a-81d0a054331d",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e45cea21-4c01-5a4c-b363-f93c14767a41",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94f922bd-66af-5185-92b6-d077cdb41d8c",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31c51cf8-6682-555a-a1a3-40bb58daf358",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ddff5a47-2552-501a-9d67-ddebeef71755",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea4e76d3-7b88-5cc7-a45f-beb97b3c18c8",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:682b5a2d-f0d4-5e0b-8938-d1bba294a74b",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:868f1730-cf23-53c4-a30d-8f21fa336e2c",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d80c54a-f743-5dd3-b154-9cf891afa88d",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea8d8e2a-deaa-5123-8b89-4d4ce03557a3",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28bc3f7b-9c7b-5ad1-ab16-455c3a7388e9",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:808982f9-cc64-55fe-92d3-b53af6c88c85",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28ea0f1b-4c06-5623-9b2b-169016cd430d",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:477dfea4-ba5f-5a09-9e4b-945eed754406",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea81e454-dce5-53de-b5a8-9acaa9164f3d",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2dd63bb2-2ff5-519c-84e2-eb5326b56b4d",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82d5a97e-72b6-569f-a3ad-fd12b7782adc",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2348a01f-1373-53c0-839d-6821dda21df7",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7aaec1a-d2c0-56c9-8ee9-b97a454023f5",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a063c598-617f-5852-9c10-50c576fdd54e",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5991242b-b061-54f1-be0a-642d3fef722c",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bce10f51-bc83-5248-a2a9-565689e96da2",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c3a9947-0696-57a3-ba37-e3e12baee61d",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5edce67b-8637-5119-883b-f037c8055fa7",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e7d1c69-127d-5cd5-9318-e8be800a12bb",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c6bf0c3-85df-5a13-9625-3002b7f55b74",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e87cbb3f-f0e2-5ebb-93f9-d4ea3c12a084",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f813580-e322-5f15-aee9-71f1bf122287",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26f740f6-3595-54e6-ba09-5e59071bddb5",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler. already_fixed \u2014 The target repository (Netty 4.1.75.Final-tuxcare.1) already contains equivalent protection against CVE-2026-48043. While the upstream patch targets a newer architecture with a ChannelInboundHandlerAdapter tail handler (introduced in CVE-2025-58057 refactoring), the target's older architecture implements the same defensive pattern: a try-finally block ensuring ByteBuf.release() is called uncond..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:997804c6-a4e7-5153-a72a-481cedb8ef92",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebb98c47-70ac-51bf-a680-042a40eaff2a",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd1d87b8-d8fe-5bef-9d35-caf9fb3271b7",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8df6e78-26fe-5948-aeae-217b4e7fc971",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebcc030e-db68-570a-ab94-19c5a04e06aa",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6fd9c9f-8dd8-518b-9b67-840087960927",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e18c93b5-9b4d-5d64-9200-ffa670cf826f",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c2d2842-979c-5e90-ad56-e069fc90d999",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f071bcb-40d2-58a0-bf88-04ad1f4cfd91",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e18447bf-1dcb-531a-a641-cddca3d40291",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91966c51-0112-54c8-aabd-554b0abbfc6a",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d786f7b-6b12-52f7-84d6-8d603dca7121",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a80fa0e-b146-5db7-9d97-9c2db89dd35a",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:777aa75e-38a6-51d8-ba46-ea7f78a3f41c",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59782fc4-bbf4-5b8b-b9bf-1acaf5a8e2a9",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23a6c38c-c1d8-5a8e-aac6-682056abd49f",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2db47bb8-d876-526b-ba8e-5052fe637782",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6cc12e8c-c412-5240-97ed-0ba228d22da5",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbc91b58-d294-54e5-a5c4-014c6b681469",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d29fb433-b065-5ae1-acde-8ca73fa3e2df",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35b62dbf-8180-51c7-b1cf-ce15faae214d",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.75.Final-tuxcare.2 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler@4.1.75.Final-tuxcare.2"
    }
  ]
}