{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:41f8e723-0b0f-53f5-970d-1894dd857ed5",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4",
      "type": "library",
      "group": "io.netty",
      "name": "netty-handler",
      "version": "4.1.92.Final-tuxcare.4",
      "purl": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:05413240-7754-51f6-b86b-e69a9769045e",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:543f5351-06e8-5462-8989-492cd7bac99c",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c78a6b25-0499-5e84-b546-2a513d4f80a2",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-handler 4.1.92.Final-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e45a21b1-85b6-56c1-b68d-f81efb452517",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d3ead72-5107-56be-bdef-2cdb1d1a0b5d",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf1415e4-2b81-5acf-9fed-f033acf75fc0",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e21d3b81-e724-5fe7-993c-f467cf3a6f90",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42d66513-8958-5367-aa4a-62728a2110bf",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22f5176b-5940-5e5b-a239-7cef4b103861",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5bb13cc-c890-55d9-ac2b-09eafecb6436",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3945b5d-7903-5bb8-a36b-f3550d7ffafe",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd8e3f8f-8961-5b48-9017-2778484ecbc1",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67735 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea55c041-4853-5e94-854a-0b85881fed17",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-33870 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54e6e7c1-d530-5396-8271-439a53772740",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ebc462c-d70c-5eef-b193-ba1b18a4bf3f",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6c68759-cad3-5545-bac3-34cab9e93665",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0daacdb-97b6-56a0-bb56-8453870f223a",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:962722b9-4505-5688-9f39-b254b72059ed",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42579 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6392a86-cab3-5f11-9b9b-e18176d8b539",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:665b4f6a-0e14-505a-a329-df2a8c5ccf8f",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42581 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fc60700-d996-5585-95bc-eb52187ad979",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1d6b21b-5e2e-5ea8-ae7c-f0585d29c276",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce49f750-2237-57c4-ae8c-af9bdd3e0a55",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce2ed633-3740-5d59-ac9c-82b11808ba62",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84cc39aa-bb5f-5fa8-8bd0-1a4c7116383f",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fdce1e1-b8ed-56cc-a3d6-ebc724975f2d",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:073ebb35-75cf-5b96-9652-15d972085c91",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c5f74ef-db27-5aa5-b5a5-0d996893f309",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:817e7fca-ad7b-5ea5-a491-b7ac14a51bdb",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:149b8e54-2269-5e0f-be15-25e066a200a5",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4da1e8d5-b128-5969-bd5d-9d69b0aff753",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7358752c-375c-5a26-9c1a-18fa8f0ecd78",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fd346bf-53a3-5262-93d8-5ae8645937b8",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f538daf5-940b-5ba8-9173-5ee05863c2b6",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbc001a7-dae3-59ee-ac2d-ebfb0d267d9d",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec22451b-06c8-568f-8d0a-898fed3499ca",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3db041b7-a526-5e32-938f-5e66691c5fed",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da72aeba-dd21-5486-80ee-3f53b2b68877",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2128a1d2-f8b5-5e39-8f14-f77737c78bd5",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e83e4b94-0e2b-5dc2-97fa-ea27c2ec0e38",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler. not_affected \u2014 The target repository (Netty 4.1.92.Final-tuxcare.3) is not affected by CVE-2026-48043. The vulnerability exists in a newer architectural pattern (ChannelInboundHandlerAdapter-based decompression handling) that was introduced after version 4.1.92. The target uses an older architecture that processes HTTP/2 decompression directly in the onDataRead() method with existing try-finally protection."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:baa60e7e-27c7-5a45-ad4d-852df23961b0",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d193a481-45ca-58f2-98ae-087e44b59e4a",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:deacee66-a5cc-579c-8581-d4e93aaf97f9",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0881e519-fa4b-52e3-8045-118d0cd7f6d7",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c20b951b-ac9d-542f-b545-0efd48f37e78",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46526b6b-eeb1-5fba-be8d-fdf464fc511c",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95582fce-4b68-52ff-bcc8-b641aa304324",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afdf7903-7b02-5819-8d6d-f72e6a61842b",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21d5cfa1-aa26-5a43-9533-de6dccc6a149",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89024bf6-c7ec-5641-95f1-6437de1ed81b",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:240fbae0-a9dc-55e2-957b-bb422140c7df",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e06f1e84-b72e-59dd-82d1-2c1b4c24343b",
      "id": "CVE-2026-56820",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56820 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8eb6e1c2-83b1-5eca-bdb8-6fac250dc7f7",
      "id": "CVE-2026-56821",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56821 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46c0929e-c1d8-5f3c-8563-14fff7e64fad",
      "id": "CVE-2026-56822",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56822 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08caab39-d1ba-5400-9ce2-0c18ee5c7af8",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:baa17e96-7db2-5aea-b665-aef75d79e201",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a1e0ea5-5f3f-5ae6-b702-d01e9d98e889",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a65bf29-a67d-5206-b14d-9fbfbe43e1cb",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29c98d91-b185-52f3-9584-a9fa0d558968",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc382988-d944-5eb1-849b-63b45c538f4d",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34c1e80a-2582-5aa9-9e1e-653f8b931f54",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bac6417-3ff8-5fee-824f-c4e0ece59786",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73e1a904-77ba-5a72-b605-a2f7990bbc45",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ddbf4d3-eb98-5b3a-aada-afba456e82ce",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p does not affect version 4.1.92.Final-tuxcare.4 of io.netty:netty-handler. The version is not vulnerable. [terminalized not_affected from patch_application_manual/not_vulnerable]"
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-handler@4.1.92.Final-tuxcare.4"
    }
  ]
}