{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:6434878a-e971-5e9b-9401-e26010eb5bb5",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-autobahn",
      "version": "4.1.63.Final-tuxcare.3",
      "purl": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:e4f1f125-2aea-5bdc-8ced-74e26699ac16",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2579428-f792-5e26-9d16-663072571d1a",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64d642c6-9000-5f28-a1c3-8e46970a6790",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75b63080-4beb-553a-8d24-2eba178b49be",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9a21436-4a2e-59b3-b9c3-9b5528af2d4b",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c91a916-34d2-51e2-8ec1-93f82d41c4ed",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41915 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4052d064-c0c5-5ec7-b3a3-d715ec6275c1",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35d1d6ca-afad-596c-8ffc-e9c5ae004ea5",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e630382f-2d76-5d45-9b40-3b9423a42799",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-autobahn 4.1.63.Final-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3319f94-179b-55f0-8b88-da55958f2062",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8eec5af0-3046-5759-854e-8cf6d02821a5",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:076b4467-2bb3-5be6-b792-bdc462724a75",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:921a6a2e-c89f-57b3-be80-2aafbb5d47b8",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ec32cb2-efb0-504d-87be-64aea6d66934",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52e95999-3273-5deb-a216-75d3348a9d6e",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dad00b8c-a83d-5ef1-b1ea-c1c739b8dc24",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:548413c0-c86b-519b-8e55-c43f73058180",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75fb1355-420f-51f3-b8a4-23821803d2b1",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d810f9d0-f4dc-5f91-950c-85f8a6dd13ba",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:923bdec4-c78f-50f3-91b8-2d322db0b8e3",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d38de816-d9be-521b-a510-12c2ad8663df",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:866f7d1b-9321-5604-9e45-81b28b1d4d70",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff70d25c-4b96-528a-aad9-a0aed50be258",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7277eb6-7ffd-5f31-a58e-4d1c88daca60",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44a921cb-71db-50cd-828e-80549dd126b1",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2397985-5329-5868-8613-539248083cdc",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ea68f74-91f0-526b-803a-9223750396a5",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7082a53-211c-5d31-a501-07d1e18cc446",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9688229a-6727-5a17-963d-4f50dc41e79d",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:863c6702-56cb-5246-85c3-abe30c148e73",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf88186e-0037-56f7-9068-e2251cab89ab",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ad8f25a-07b8-59de-a301-6e10e0ce3fd4",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccdfa36b-ad58-5bde-988a-8b4f412114af",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f241b6f-d54d-54b4-a375-87e72f020ea0",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a87988b-5169-5c86-92ef-8c1919da95f6",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:023c0b86-560d-50aa-926f-50720bdd843d",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b44790bf-f825-5417-bba1-37f36ec2a956",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75b6f799-2355-532d-a891-de2ab30dab08",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e16e0f33-cf22-519f-8406-223a06dee669",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ccdac63-45aa-55eb-a338-1ac0ca0d4e13",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11425fab-18ae-5c13-9f56-eca8746cf75c",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a932011-e7d6-5a3e-a26d-c2380238f5e0",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2bb3300-536f-5703-ae8d-bd2b3344c2ab",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e46d9080-0684-5972-9ef8-c8e79edef631",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:78f01270-8773-50ee-8ad6-f8f9e09a295f",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00c5a90b-f2fe-53f8-8026-8ebfee4e48be",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48043 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e878aa25-eea2-523f-80cf-0197b8a8eb4c",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eee5671a-e544-5847-9558-bcd8f4e5eb0f",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87190dca-ecb6-51ce-98e8-fb17bc5ca082",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90fba7da-54c2-503f-a3c4-2a996f4c805e",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0dd79870-5c6a-5c05-8fd9-920272d5cd97",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c056d8c1-a68e-5205-92d7-fc91634ad9db",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aca206a7-ba06-5286-97b8-2b04268d5473",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c327083-d19d-5005-8ce1-2bf8f49cc4a1",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75e4350a-6b90-5e0c-bda8-81edf4c18bae",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2511da8c-2b4d-5734-af1e-3d079045365a",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2654e7be-59dc-547e-a6cc-15dcb0dce986",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56817 does not affect version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn. not_affected \u2014 The Netty codec-xml module contains XmlDecoder, which instantiates an Aalto XML parser without security configuration (line 38: new InputFactoryImpl() with no XXE protection). However, this is a library component that Netty itself does not use in its own production code. The vulnerability only manifests when downstream applications explicitly add XmlDecoder to their Netty channel pipelines. Per..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e9b2ecc-538c-56d4-b645-e489ddc364e9",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03ffa8e7-2efd-5172-88e6-107c2163df5b",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73c5b12c-887b-5d1f-b186-f4825c8e1643",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3e7837a-d31d-5b8d-bfa9-a21864828430",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd8dd7ad-b113-5f35-894c-37e94b4c1bd6",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75137b17-3aa9-5e86-8f69-64c3018052ab",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9861193-8b5a-5f17-8d82-752a80a847e8",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f9c8cbe-0a14-540d-8430-7389f93b6576",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bdfc29ff-db79-5e33-a01f-0575bdc0f4e6",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1560f64-9ed1-5146-9e01-1961402dc91a",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.63.Final-tuxcare.3 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.3"
    }
  ]
}