{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:015e683d-f7b2-5f7a-ab3c-f5572d63e105",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2",
      "type": "library",
      "group": "io.netty",
      "name": "netty-transport-native-epoll",
      "version": "4.1.63.Final-tuxcare.2",
      "purl": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5d2177be-ebf0-5d91-a626-7502192f1fc9",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ff16ae0-3fff-5ffc-8aa3-9a3f1c3ec056",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f0c86cc-af2c-57ad-bc46-fa2138cc89e9",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df657187-716d-52ae-8820-60da235c8181",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d0ed253-1dee-5df3-9399-54147b4e12dd",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17bf86a7-bba3-559a-8b14-f84eb97fb863",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41915 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf3ee52b-bc93-50b2-9bef-4e6c4eb4bfc1",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e1d400b-27f6-5e90-906e-084a7ad47609",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42392a9f-3110-52f2-a32e-89ca38875576",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-transport-native-epoll 4.1.63.Final-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8e8bc35-fead-5a95-b644-4c94eb4d8bef",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e26ba76c-20da-5614-a2bd-59f5861a9d99",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ac093d9-2a3f-5d91-83a7-512706ed83c7",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24970 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0e4ef5f-37a5-56d4-9a56-e8476f2017c6",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02521d11-384d-554c-b8ad-bb13298f9b9e",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:982ddcf5-6342-5818-addd-38d92d986749",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13a0f0d3-febf-51b0-9e21-bce539c5390c",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc7ade4e-a6f0-5030-9916-b69c5c302f7b",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-59419 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:732e80f3-0d08-5913-9ad7-74ba0490e90e",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a59cace9-811e-5987-8d59-1191e2878a08",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:371f08e2-7a65-5169-b4f4-3a3589b853e3",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f168d2a8-de83-504d-be75-06c7cdaeadbb",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:485726f9-1ebf-54b2-9f98-749a4f856a49",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70cec613-0e4e-5e40-b02c-1a1ca1beef88",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:722aacda-962b-54d9-ae78-064fc08e1c57",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bfd45f3-5c56-56ac-b6a7-6f0c788bfd1a",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61e880ec-8854-5eea-bad7-a905944a7d42",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d067c604-8be6-5add-9d71-4788ef4c5f20",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f146ab4e-652f-51fe-bf0b-e04594870d16",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5f747c6-6048-56e5-ba00-a464655921f7",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe1a6a8f-9d26-5471-9cab-be79a2224156",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3062916d-31e9-5b9b-9e99-2ff5b654d647",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad080609-e6da-525a-b638-69091a663279",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8de78bd1-ebfd-5db1-bf80-6e7c2fd8c2cd",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08bd373c-9cba-5978-ae4b-e7a633808233",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee7986ac-1e36-55b6-8c36-2246b5bc2eb9",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95b93b1d-18f1-5c1c-9bbb-50f21020b352",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fdff3b0-e3bc-5f90-8c1c-23daf20ad0f8",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e894d160-6853-5ed2-8438-a8843cc06caf",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dbc7bf2-a26b-5b7f-84c3-75222ba24c8d",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc6a7287-36e8-589b-ad4e-d36ea0253f60",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aca163e4-af7a-5fae-b382-6d53a6cbb317",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42057865-12cb-5095-af97-cacac15296e9",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1989c6e2-6a52-5e50-be2e-2de7c16c84cd",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ad05bf1-f27c-55f1-867d-a15e8d4bbdb2",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87bc1b35-f114-56da-ab5b-3427a9ce1146",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:592b11f3-7f6e-550a-b459-788c36d5e170",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48043 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58ebdd24-c659-5571-a1b8-ba9feb58d453",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b08c959a-bd60-51ca-b235-f7602168ddb1",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69305923-6cbf-5b8e-adf7-294bc1f3f462",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dac7aaf9-ed68-58c6-bfc8-00996ede7d81",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a162bf0-354d-5c89-a40c-1963457e1964",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72244abd-1b4c-5537-a084-65f4847c766c",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9113ff78-d951-550f-ace3-6d68074469ee",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7db1ffb-a0c5-50aa-8a05-2caf4b126536",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5c44c80-a207-5a71-963f-c5dc80a14a42",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae2ffcd6-54d8-595f-8ac8-4763b6007fde",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f70a487-d821-538a-a456-3bb29d3f4ba7",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56817 does not affect version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll. not_affected \u2014 The Netty codec-xml module contains XmlDecoder, which instantiates an Aalto XML parser without security configuration (line 38: new InputFactoryImpl() with no XXE protection). However, this is a library component that Netty itself does not use in its own production code. The vulnerability only manifests when downstream applications explicitly add XmlDecoder to their Netty channel pipelines. Per..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85d4ed20-2e26-5534-9b2f-18e60e74c5dc",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cd9a262-6d9a-5dc7-b955-57a6377c6b9e",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:204169b7-f99c-57bc-8bba-7e90af7a03db",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f16e265e-3028-50fe-9ace-344fd989f426",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9092b40-6dda-5d38-8df4-7d2c7ab230b6",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf9a7309-1d8c-562e-8fc6-161d79522acc",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9db81efb-e6bf-54b6-806b-69e5ded88473",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6304559b-101a-5410-bdac-039e9ecaae4f",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72f4b278-8d8e-565a-be48-1a917ef7322e",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:372350e0-5659-55c2-8597-4352b97697e3",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.63.Final-tuxcare.2 of io.netty:netty-transport-native-epoll."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-transport-native-epoll@4.1.63.Final-tuxcare.2"
    }
  ]
}