{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:b11be72f-7ba4-5749-ab98-0a0ff5fdf72a",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler-ssl-ocsp",
      "version": "4.1.92.Final-tuxcare.4",
      "purl": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8b95349c-74ab-598c-9c7e-bb5435084441",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1ab410a-a6a6-5fae-8207-a4ac38128d23",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7558e27-31c2-5e6e-b975-14acd98c0deb",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-handler-ssl-ocsp 4.1.92.Final-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa2f7a6c-e328-52ea-893c-90023799ec5b",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e03f9cdb-dbfb-55ad-bbdd-c65e79c1c5eb",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3d6d2d1-9117-5ccb-a29b-ee10ff1204a7",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08aa9da4-1f26-554c-ba67-4323d45934a6",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebb4a566-710e-51f1-8e29-eaed7982c03c",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:524cc663-ef69-542f-ac2c-970022dc3335",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af68e150-11c1-5222-9a05-aa21fe731e45",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4543ff33-8bd2-5433-83d2-3ed75d59a872",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6b41ce4-04c4-57b8-a513-f467298a668b",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67735 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f217e8dd-f63b-53ef-aa21-3e65b5e154b8",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-33870 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:540145fd-0f6d-5c84-81d5-1f7d677486bc",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c364b0e0-48e7-5c37-bdf9-76c5770c159c",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:200c5958-b304-5683-abd6-efb56090506a",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8381785-2fd2-598c-afac-d13269fcf765",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4de9bae-05ed-563d-aab7-63a8527cb27d",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42579 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81c032ae-072d-5059-9057-592b0e571ce2",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:113fa861-f1a4-5a71-82b3-168374ad2ac8",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42581 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20b80010-b328-5897-9006-45824db482c5",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72cafa68-e588-5dc6-82eb-32ae85f35604",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:693bed23-1e52-564e-bb6e-3b74c846f3b2",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:552f31bd-7fc5-5623-b6a2-3f7f61c24b5b",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bbc869f-b1d0-5ab0-ae64-bdab040678da",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db90adfa-245d-54fa-b9da-d84ec4178814",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dec2b4ea-bafd-50e3-826d-0efbbee6dda7",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba852518-e615-582d-b8ec-a331beca0363",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a379f3c-5d48-502f-8d50-98439f8ee64a",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab4bdd6b-f5ca-5944-947f-d95f684571c4",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eddc39ca-89dd-5c04-b952-458cdf6de485",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da3f084f-aa28-5c2a-95ef-4324b85b47d7",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:905c5680-4c37-5ebd-90d5-e25abb175331",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48f87070-b2b1-5283-9322-9c3eceb03667",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41b4acad-7cbc-52da-980b-6b11cf074643",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b4bfeb4-c89e-58af-b7e7-993a4b69cbe6",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d52695b2-4403-52c5-bf6d-8fb6355cc926",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46e4ebb6-1557-55f0-9e7e-94f967deab74",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4f91d2b-ecff-5ade-bc9a-45d0b8b2f344",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c578ae40-2651-5e0e-b1fb-9fd966415b06",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp. not_affected \u2014 The target repository (Netty 4.1.92.Final-tuxcare.3) is not affected by CVE-2026-48043. The vulnerability exists in a newer architectural pattern (ChannelInboundHandlerAdapter-based decompression handling) that was introduced after version 4.1.92. The target uses an older architecture that processes HTTP/2 decompression directly in the onDataRead() method with existing try-finally protection."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:459719c8-f127-5ffe-9f16-319c494538aa",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87c561bc-bdd8-59c4-a6ef-a47c13147807",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95bfc45d-6a00-5d50-8a04-774720a72e01",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8b1d987-01b7-5149-a712-ab31ebffebf2",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d794483d-681e-5e67-8bc5-2e32379812a6",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:450217ea-2329-500a-90ae-6c07315a644b",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e9cf693-e554-59c8-ab37-52d4de5b317c",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6ccb1d5-3a5e-5eba-8591-ca5fd920d0ce",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de54208f-a711-5422-9eb3-d12920aec1dc",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49449e85-6522-5727-b192-86100992355a",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbfad405-24bf-5e4f-b710-610292afd5fe",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc0b0c87-b49f-5d1e-8ea8-d1068ba56b81",
      "id": "CVE-2026-56820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56820 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4955f7b6-8f5b-53b0-b0e3-03bd7da07027",
      "id": "CVE-2026-56821",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56821 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fca812a-d34e-5b2a-8f55-08b9c77dd5f8",
      "id": "CVE-2026-56822",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56822 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba7d050d-2221-53dd-8ebf-459511672141",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9285ebbc-3180-5191-ad99-d7f19669259f",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:521e2191-9b13-5307-bfa7-973f9044eeb5",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7e4a51a-344d-5daa-8cc7-024f116ace29",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0d9b633-cf56-5dab-a817-71b65174a1f6",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c25af29c-e0f1-5272-adc4-5eb353bd0c44",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41c40b0c-ca4d-550a-8f54-66055a28a147",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dba3873b-7a80-556d-8c30-ce6f74e19297",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63e21dec-5d7f-52ba-b426-5f10aab359e5",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cef48697-2c8f-55f7-ac4b-8856ee770518",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p does not affect version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler-ssl-ocsp. The version is not vulnerable. [terminalized not_affected from patch_application_manual/not_vulnerable]"
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler-ssl-ocsp@4.1.92.Final-tuxcare.4"
    }
  ]
}