{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0e92ffa4-5652-560e-96be-fd3abbb82d9b",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite",
      "version": "4.1.63.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:b773935c-87c1-5668-aa7c-e5f5753f2cc5",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4f0afee-120c-5d5b-8ea4-28927c38ab43",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-37137 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03f60944-b9ad-515f-9c03-36140ea78d9d",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-43797 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83001992-79ee-54c3-88ad-fa6db34c750f",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-24823 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc1c1479-f8bb-5895-b141-244e862e6991",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41881 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52d3c0bc-c278-53f2-8026-7b6bc026d97d",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69c5361c-ca75-5b4b-b036-7fd4df96a364",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:020e90b5-5f80-52ad-8840-aed4c0e3fcf8",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c30b28d-cf90-5e45-93a5-aa76591a1032",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite 4.1.63.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5840568-0b38-59f4-9778-fd5d9998777b",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64c90f4b-3bd9-5c94-9f1a-9224d1eafda2",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-47535 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e75095a-bfe6-536b-8cf5-93f59870f659",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24970 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c839295-404c-53c6-ab64-dfa818b32a57",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ace83482-a6a1-550a-a317-5e77473c4cd4",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a9a87fa-2517-5769-b073-bb72cf544335",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25d19e79-8835-531e-9eaa-74521b107b11",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c50fd082-2cb2-58c9-b895-429e8c2d53e8",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-59419 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef79d61b-d7e2-56b8-ae13-b3b97539214d",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efa5ce7f-2490-5a63-a972-9da56b83c8e6",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c6f4457-5fd1-5146-83ba-33d3b4af2654",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17aad219-818c-5026-b30c-a04cb5d7cefe",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a85ad56e-828d-57e9-8ab5-e6e028781fd6",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c44b6671-4a73-50ea-a871-fd0b0b20d7c6",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9195423-daa6-59fd-b4f1-9f84917e6530",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0140590-f2c1-5aca-a3e0-366b04a5730e",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbec32cc-2d3f-59f4-ac6a-0bfd64ab1941",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bed17ca-daed-58ce-94a1-5c4db9accd76",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80af05eb-0fe7-5d40-9761-c50c1c51741e",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2368369-5b58-5106-a607-48c5fb6f690c",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2521d22-1f5f-5547-8ee8-7ce6ca47a69e",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2954075-251f-5399-a707-d001b6ba7feb",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3a09de7-841b-5e9d-95ec-d2681117e605",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bbb8049-ce93-5c56-a6d9-4eec20e7b9c6",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5cca0eb-f80e-5702-8ece-bc64b56de4ad",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca425fc3-f5c0-5e9e-8a76-d1c13fa502b3",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:449899e3-738b-540d-95a9-8d68c4454ac8",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6654a82-fc1b-50f2-b89b-64dddc31361f",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bf5152a-2b5f-5021-ae8e-1a984cd7ecc3",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb64c8cf-9ba6-5fd5-a1e6-2c41a5170532",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cfe98e2-bc95-5ffd-b9a1-0ef3ab4c8ae2",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb3e34c9-15c7-544a-a9b7-3f65238de945",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43a48d92-c273-54d8-88ad-283c7693543f",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b49beb5f-32c4-5956-8ae5-08c1bf49cc72",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed8e9ecb-5826-56c0-86a4-0c5d303f4421",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34a24bd4-336a-5b8b-be7c-29f8f5f5a11e",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5d18abc-08fd-588e-ac2b-cafd193ae8eb",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48043 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e36d5f18-8ac3-5a6a-b682-a574ecb13184",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b76b9814-4c9c-55e1-820e-3fc62337dca6",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eca91df2-75fc-5fee-a7ca-acf59fc3d131",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d3ecb1f-d2f8-5cc4-b1bd-e3a0c6f84468",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9d8fa16-f3ef-58f5-ba66-98eb4b70ed68",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:983c34e0-101c-5c3b-a6ec-ef3a4268fae8",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ef49b48-d691-5e51-83c4-71eb222040fd",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e36bff4-96dc-557d-bac9-31d45ce12db4",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe56b182-7213-5a49-b73b-e41e1c66c02c",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67b6b5ca-6877-5541-af6d-75ef07bb251d",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba00b029-dfcb-5c22-8c48-62a9f218c053",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56817 does not affect version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite. not_affected \u2014 The Netty codec-xml module contains XmlDecoder, which instantiates an Aalto XML parser without security configuration (line 38: new InputFactoryImpl() with no XXE protection). However, this is a library component that Netty itself does not use in its own production code. The vulnerability only manifests when downstream applications explicitly add XmlDecoder to their Netty channel pipelines. Per..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d9a91e2-d156-5cea-9176-c07e829ec342",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0dc72e9d-7405-5e75-878c-e2ab7ac304c9",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5aa70f31-390c-5f80-a52e-4839cb190671",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:309b940f-6b62-5975-ae99-35ba09ea912c",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b14a93e7-49ff-5718-b875-2856347e6754",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9f7f4bc-5e3d-5355-b976-4b46fa6b9200",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:522377fa-19d9-55e2-9957-5ae7e00d71a2",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb463c7a-4e55-5561-a4b0-0dcbf4c7d322",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f84aa3c7-cfbe-5750-829c-06485cdf4922",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2e08c14-2354-593b-9579-2461476e1258",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.63.Final-tuxcare.1 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite@4.1.63.Final-tuxcare.1"
    }
  ]
}