{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:75254bdd-ae7b-5dd6-92a7-5985b35e9c29",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler",
      "version": "4.1.92.Final-tuxcare.3",
      "purl": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:94d8cd11-ad31-5e17-80e2-7dc1e9c0f1dd",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0232732f-f5cb-59b2-a98d-1e162d708108",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9af2ff3-323c-5a31-b172-79e273cbe681",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-handler 4.1.92.Final-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73d3f978-459f-5f80-b774-421ffbc7219f",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03122621-ff79-5aa2-beb1-ea55d3554bd2",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eec050ab-caa2-58f3-b122-053375e3a914",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f594dc4-4489-5fa7-bc3e-f41c87f1a6e8",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfe92ab1-ad33-5dec-896d-8c0206cb0e20",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db2abb75-3973-5215-9276-892c656fcf6a",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6bc0f30-0877-5965-b6ab-2fd0e684097f",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:959ce696-f3c2-5a34-9ecc-dddadb9fa1cb",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf7f9a30-39ae-5d9c-b8ac-922aace1e7da",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67735 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2809ce40-495c-5644-8696-5b2c80c2d1ac",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-33870 is fixed in version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08b503d3-f088-5a85-95a7-a013a0d1ffb4",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90835d17-a7ba-57bf-80da-8b0460ffaef4",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:641bb8fd-e399-5c20-a66e-1eddd88e876c",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1594c7ee-c4eb-5c51-9754-e01961db730f",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:171749a6-c34a-51ea-ab01-6c0aedc7db92",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c855b2c0-b239-538d-aecd-66c016ea36af",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f167835-5c04-5a90-9a5d-bace1f3fabb5",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e79d7cd-655a-5e2b-adcc-4802602347ca",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64953978-a5e4-55af-9091-8789d8b05889",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4116d179-7c5f-5432-8472-5ce4cba977ca",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7c099ad-f471-5526-aef0-7b1a9a78a0b4",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c344991-edb2-5f74-b4d4-49f66c1dbae3",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c49168ef-ffe0-59e5-8367-402a2da4f29d",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e8870a0-b155-551f-a10c-83ce6b15468e",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a92bd1e0-df98-5971-9999-e92f6188d918",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:148dcdd2-023c-5b06-a3e5-797982e7f769",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccf2f1b0-b3b4-5f54-b58d-fc9707f6ae53",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7ba5163-664c-5a7f-80a9-7a4c4ca7dfcd",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32c98220-f199-5f21-a92e-fd3a3e0fc180",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:682435d4-1eb8-50bb-b986-4c600e550a38",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3b25f0d-10d7-5ccb-9eaf-f523298a875d",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae3028bc-782a-59ff-a291-7099450dfee8",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fe13d4a-dce9-52f0-9040-709c0a883ea2",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98af6a5a-2bdd-591b-893d-3119878818a2",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdb62319-dbb6-53d6-a2a3-b18a24c06284",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a8d2e44-a4e1-5015-adb2-b94051b8be38",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5983dbb2-f6db-5010-b7fe-84849e01c0c2",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler. not_affected \u2014 The target repository (Netty 4.1.92.Final-tuxcare.3) is not affected by CVE-2026-48043. The vulnerability exists in a newer architectural pattern (ChannelInboundHandlerAdapter-based decompression handling) that was introduced after version 4.1.92. The target uses an older architecture that processes HTTP/2 decompression directly in the onDataRead() method with existing try-finally protection."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e1811df-dd64-5d74-84fc-3d36aa1cad20",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:061141ed-f7b6-5007-854b-71dc834415f0",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44a36c85-409a-514e-b3a0-690251ff9af2",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a72c79bb-a031-5532-b2f7-ed4468bba939",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e891a1f-f297-573f-b52e-39a5ad6c52ef",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26326a1d-fa2e-5d67-ac12-d0d09c07a0fa",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ded4521-07b1-5c63-9b87-995e1c4d9daa",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32f9c264-9221-5661-9164-3935b9f5bc2b",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5852c58-d9df-592a-9038-3bc795ad9a18",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa0c818c-23d6-521a-8ac4-1765cad073fa",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d98296d8-eb88-5327-b8ad-f8d9dd022b82",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48e7f8ac-b3ae-5777-a53c-8d431a4c2b97",
      "id": "CVE-2026-56820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56820 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8eb4e0fc-9bad-53ef-af4b-01fec95037e7",
      "id": "CVE-2026-56821",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56821 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68440fe7-0c20-50bf-a32d-7295fc4b58a3",
      "id": "CVE-2026-56822",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56822 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19732e90-4dae-5c11-8137-3f47af31a31a",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b841a9e3-ca81-5355-9ebe-f2a39a88ccab",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b7845d7-8677-53c8-8a6e-12b2efe06081",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51c878b8-67eb-5bb5-be69-288835efdece",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b173c91b-1120-52dc-9c79-c1a34e17c500",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a4c9a77-38f5-5c71-bbae-8f79ffa3b9ff",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56f3b7da-1bad-5fea-b5a0-76cf0a203dba",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b09f35b-b7c5-526c-b4a3-4a38ebb03a35",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1840623-4b8a-573d-b879-2004990e0369",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d593e3d-5fe4-57ee-a274-74732d884afa",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p does not affect version 4.1.92.Final-tuxcare.3 of io.netty:netty-handler. The version is not vulnerable. [terminalized not_affected from patch_application_manual/not_vulnerable]"
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.3"
    }
  ]
}