{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ead635f9-b16e-59d9-b901-de7356ea17db",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler",
      "version": "4.1.92.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:fb3d837c-e609-5c01-9ba2-54c24c995459",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b485e8d7-bc8e-5cf1-81cc-102aa055017c",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b97b5995-82b8-57fc-b0d5-3ab087b219ae",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-handler 4.1.92.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a76b2e46-be83-5163-9e67-7aa6c74d296b",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6dbb3ac-659c-5a79-90e5-d4091602d859",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a2adf35-f2f3-5d1d-b35e-a1c3b0580912",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df1a666f-e3e4-5f86-9629-2cb7a94157d3",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a23178cc-91d3-567a-ac05-f2328eed061a",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1fc02c0-ce04-5e32-bfb3-5bdf6a22d861",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:072b5787-8c47-5138-9984-e1069caf5278",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36403765-acc7-5028-9b51-aba9375e1cf3",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ae4b30f-909a-53d0-89ff-0c1192700091",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c5d1e68-b83b-5b62-8559-8b9fafb6b054",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:def58087-5351-53b9-bf28-612927213b72",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c681e6c-cc1c-5a44-9cfe-4fb18f0a56ae",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec9ee565-92b5-54c4-a156-36a533ae9a15",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:716e3810-1be9-51f1-af76-8e6bb1747958",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a05852b-0fe5-5d11-8e02-a8342e20d04e",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1f5eb94-4aae-59bb-8a60-9e5825754045",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3e9991b-0c92-568f-ac5e-5e187e1ffad3",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75783c89-738c-5b29-b319-95cd59858837",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fbb042f-2928-5d45-bc5c-d04c5dbfdddd",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d90a4e7c-2700-5b6e-9152-d4bb2e2a3cf6",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:821c2d44-5651-5502-9be9-32aa08a754bc",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e495d13b-b952-5ddf-bbb6-b5a7d9d97532",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17d0f0ff-b1f3-5f7f-b19f-943b423245c5",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c53237bb-bef0-5edd-8c49-a55fba623cd4",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc8b148b-ab81-5402-841a-bd15b510cf0e",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3269ddb-d67f-5c74-a058-ab99a69efa24",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9a7e45e-17ba-5105-bee2-c3f07aa34d0f",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7d3eadc-ec83-58c3-aec8-978663925f7d",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:647037bc-ad98-5b3b-bf0a-f23122e87aef",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3d00ebd-b19e-529f-bc96-af82a594e6ac",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5597b60-9e65-5dac-81bd-315ce66a458a",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b4b8a7b-a25b-5c75-8aab-0a1d7b0d89e7",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9544e99f-1ce2-5c8d-b4af-b38d2a511afa",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5f4240c-4b30-50f0-a3e2-b6e97ec43695",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71ecb9a7-8e27-5b27-81ab-120e0c5fff1c",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bb1b2e3-a96e-57f6-95d2-e04cfec58f25",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84b84400-4aa8-502a-a3cd-188b20bf6925",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler. not_affected \u2014 The target repository (Netty 4.1.92.Final-tuxcare.3) is not affected by CVE-2026-48043. The vulnerability exists in a newer architectural pattern (ChannelInboundHandlerAdapter-based decompression handling) that was introduced after version 4.1.92. The target uses an older architecture that processes HTTP/2 decompression directly in the onDataRead() method with existing try-finally protection."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:685f9518-7e2b-5e96-84da-e6dbfa1e3a91",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27243d4f-1534-58a6-b38e-6426f9be460c",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0eed5c8-bf69-5374-a543-19de9990e482",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d5b1b83-93b0-57af-b322-f86ab16e54b7",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8686addf-fe1d-5ae1-a23b-f2b1ac3fdffc",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85e99bda-8fdc-51f1-ac14-da1ae82aa485",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68b62b32-8c10-5284-bfa7-5180b010a013",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2e52f42-3dd2-5d63-a1a8-5aa76f69c89a",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:262c5226-3716-5f94-b479-f35826d0fe41",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d19cec58-e54c-5a1c-9df6-cf7ad6e92b6f",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e91fca2-1eff-5655-ab6b-f3f631210ae5",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2857111d-1858-5422-b55a-72a4a7086673",
      "id": "CVE-2026-56820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56820 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e9b6a5a-02e5-5a80-9035-d7fdddb8eb8e",
      "id": "CVE-2026-56821",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56821 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39fff034-c684-5714-b6f5-fbde9be52392",
      "id": "CVE-2026-56822",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56822 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:637ac3a8-6147-5302-ba03-de600de936f2",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f22e782e-4ea5-5c2b-bef8-19e1f0fbee16",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b1bca07-11d9-545d-b418-788ffbac85fc",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38afc01f-3175-5365-9129-2f5504751c3e",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e95f6ac-8c8a-592f-abe1-e72d7cedcd32",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89726e8e-1e4f-5a15-a2ed-a9e9eba0844f",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:721b86e9-ad74-5151-a368-f4882badfb58",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02f963b8-7993-5d6a-8eb7-09972c31a2c6",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc8e28e2-740c-5853-8159-667ae20a8637",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4fc248dd-4a54-5353-837b-e2f3aef6e9cc",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p does not affect version 4.1.92.Final-tuxcare.1 of io.netty:netty-handler. The version is not vulnerable. [terminalized not_affected from patch_application_manual/not_vulnerable]"
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.1"
    }
  ]
}