{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:e687df93-0a36-5665-9419-5637b86937b9",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-http2",
      "version": "4.1.92.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:61d0806b-0a48-5e89-b3de-e123777fd274",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1725942-8c24-57cf-9f09-10a2826b36d0",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af1e6d50-be38-5501-8217-a42163b30b21",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-http2 4.1.92.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8dc38c93-94bc-5166-9e7a-4e4b96771b93",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8eb10aca-6784-5590-8162-bc45c8b2cd84",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb2f888b-668e-568f-bf2e-59798bbc4e9c",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4ad4e50-d681-52d5-bf77-f4098a06052f",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70ed0c14-1a0e-5d9d-80ff-45e5d9dd4beb",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c025a73-40cb-5b36-a0d4-2be664c67bef",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7579166e-a03f-539d-b0a2-ff178c0e8f2c",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0982f88e-cc4f-5b28-8362-ba53a25c2fdc",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f5486c4-529f-54b0-851e-8b49ae76e2ac",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fa21a5e-3030-5835-a189-b157ae9c84f8",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c00946b0-d0a8-5a8e-b2c1-33c9c93aafa5",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58272eba-edb8-52e0-a1d3-805849179644",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83e3e243-e391-5910-befd-62e8875aba99",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc3f5441-9d94-5596-af2c-909823002853",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b92063a1-02fc-5293-93fc-be03e0139c13",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68dddf49-6a0a-567d-8136-984e4382ac08",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc7781f9-d3d6-5ca5-a126-ae6329b68b2c",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9acec9a9-f5bd-5064-afa2-9955cfb6322c",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:904fa0cd-3b58-5ca8-a8f5-0e2882be9187",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc3d4f39-3e90-5173-a398-6691fa1fd0a9",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:920f42b9-f478-584b-914b-fce662c6a195",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26a111d4-cbd7-5580-ab62-67d2797383fa",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aac0d241-1562-5e5d-99a2-3b4b8d617b0b",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9584385c-00b0-54a8-bbf2-03ba8cfda299",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f4e6f60-bbb0-50a1-a5ee-ab389d1b563c",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad18c807-cf08-5dde-a5fd-9d1e2aaf5c42",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ee195fc-731f-5353-ba61-f4944de328aa",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0971107-4a60-59ea-8df9-20a737d912c9",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ea6c381-7b37-5406-bab9-e0b39e8cf4ea",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af54066a-21f3-5e82-8ede-99741d2f3a41",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f2367fc-dd57-590c-9391-f2ba681a38a4",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40ceae9c-a1e9-59fd-86e4-42770be961ac",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:421ab6da-a432-50a8-8184-e2a5f8063c81",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca643e60-8fa7-5577-b80a-c1349706b588",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10c847e5-7ff1-5115-a992-2db40bedc4dc",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a738953d-e6ae-5c94-ac02-5b2ae447767e",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3436a31e-81ae-5b46-841a-da018eeffbf0",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2. not_affected \u2014 The target repository (Netty 4.1.92.Final-tuxcare.3) is not affected by CVE-2026-48043. The vulnerability exists in a newer architectural pattern (ChannelInboundHandlerAdapter-based decompression handling) that was introduced after version 4.1.92. The target uses an older architecture that processes HTTP/2 decompression directly in the onDataRead() method with existing try-finally protection."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37e97a15-4bf1-55d1-a2c6-ea856e92ea79",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97f18db7-8d2b-552a-9a44-f09fbf0c306e",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e48fb86-5bf1-58f9-bee2-af55b9ed87ef",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c6a44fa-c18b-5ef4-9705-9244ba500d1a",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:366f974c-1834-518b-a44a-068eb1bb4d53",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:088492d7-f1e4-5f22-94be-e7ff00461f63",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f2fef11-7a53-5fdb-a0f1-75eed38f096e",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06e4d03b-74e2-58a9-831b-81226a9b30f6",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fc28801-f828-5c94-a2ce-bde84623ddc3",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ea364f9-31a6-55b9-9d3e-5c0f3991e176",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7a9601e-159d-5d5e-92f4-234f20bc0ec2",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:022d325c-b1e3-5a6b-87c3-fb6b376a4c6e",
      "id": "CVE-2026-56820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56820 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f54db35a-639c-505e-beaf-532ae1555a90",
      "id": "CVE-2026-56821",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56821 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79d30595-4078-5faa-bd18-5ecd56819be5",
      "id": "CVE-2026-56822",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56822 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3868cb2-acf9-5979-b307-d530874a67a3",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f42c254-3394-5a50-97ea-b91dc4c951ab",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:336daf69-3e62-5b85-951d-53ae2544476a",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4bdd4e73-aa02-5c65-8d6f-02a235b2c196",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e2f64b2-e712-5583-846c-7f99fdb3d63a",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2dd7bff4-9cf5-57bf-97a1-5f7e0ad04eeb",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b89b3f9-9345-5d48-a818-88eb549196cf",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da39ee31-06f7-53f8-b655-5cde1ba4536c",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3449eb32-0f72-5a2c-aaac-f71f69397fc1",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63dbbf6a-57d8-554f-b266-c5c8d92bfdc5",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p does not affect version 4.1.92.Final-tuxcare.1 of io.netty:netty-testsuite-http2. The version is not vulnerable. [terminalized not_affected from patch_application_manual/not_vulnerable]"
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.92.Final-tuxcare.1"
    }
  ]
}