{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3741ae9e-868f-5d63-82b2-43898ad13fff",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-stomp",
      "version": "4.1.82.Final-tuxcare.4",
      "purl": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:a657d732-3387-5795-a24c-394ed4900b00",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db99cb09-04e2-50fb-9a55-72e45e673066",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3d3496e-c47d-5a73-bd11-6dd3c964241c",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:789dcf36-e521-54ad-a715-233b1ce8681e",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df06e772-a0eb-5c3c-a7c2-a1d3899ffbc5",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-stomp 4.1.82.Final-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:168aab47-45cd-5e67-bbf3-04dde41e4108",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f73e631-2b6c-5fcd-97a4-698b3720f8b8",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-47535 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:111b6dc8-47df-5391-a400-3d75099da225",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2db64975-9975-5dde-bb65-0e414696fa19",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:862341f8-3871-5e5f-a09e-d24bea071b6b",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e57ec7b1-6cde-5f6b-b371-048793f7ba35",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eba724f6-603b-5a88-afdd-7a70a003c454",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b08cceda-56e9-567b-b76d-22e871b31960",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:baf68621-c929-5387-8748-d235978e3fd2",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:405ca129-818a-5a40-9e33-eb4c25daec31",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2f03c69-41e2-549b-a4c6-fa7db4f67d70",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5244a29-b8a2-5343-9447-73c08983bdba",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9476b949-4522-5bf4-9154-63fb36491cb3",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26aabf30-59cf-588f-a2c0-2d5cb63c152d",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1558a065-77d7-557d-9ff7-d52cb80e5597",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b43430e-23ad-5c9e-b4d3-56ad5660f407",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c817ed60-f198-5b3e-9b87-7000d3e782a5",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8e9a4a5-91a7-5df1-b2a2-2880a35c10c7",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71aea278-c815-50d2-ab98-1059e00186b1",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94951dd4-4407-516d-9ccb-5c179f89cdc8",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86ed26dd-30d7-5f13-8efe-8c561f80c9d1",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0bead480-32ac-5238-aaa6-1d0943f9d56d",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf525231-7aca-5feb-9cf6-aa0370bdef3c",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a8fb54f-e8e1-5209-ab02-774907f22fe5",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:200a03a9-1b6f-540b-be14-d6efb3c5ece0",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a11c1c0-4fba-504f-9890-970edc28fea5",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4d35714-adf9-5956-9adf-22935a5e1a8c",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c09ac67a-38b5-59f6-b6af-ad0140aa1aeb",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f5e18e0-0c93-5273-80a3-4c5941675e56",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:acda4b74-e6f0-5952-a268-648a0c5ea119",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c1cbcf7-939d-5739-8717-0d6b1a2bc95a",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b422826c-4a65-5160-a1c7-2dd442c21990",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a643b710-70a0-59fd-adeb-a34da0646656",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1639dff4-0239-578e-8a7f-dad18893128a",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c03a572-579e-51cf-9c8b-e69b88326a7f",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dca39a6-669c-5e8b-b3e6-3fe6a62805da",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1845e8d-15cb-57c0-9591-5e9e821a6f72",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48043 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5370f75d-a755-59aa-a28a-014da4dfd7da",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a52a584-d2da-5732-9984-c4e30bf877dc",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62a34da2-4f1a-54f2-b8aa-35488062e27c",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6ec454c-b7be-5ebd-94ab-8993ed3c6e97",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07e2f856-d09a-504d-90ce-386ae525508c",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:136b34ad-f35f-575d-9514-641bf1dd8cd7",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25e56b9b-6999-5d49-8223-db14776efda9",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d6a11c4-af8f-5074-9beb-5aecede9451f",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0afcd048-2a2d-5123-9f93-9338265260c0",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f97c9c63-ce89-5712-a19d-2355b4f1ac0a",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4faaa418-c34a-5ee7-bfc4-d532c5f83c5b",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fdb48d2-6438-5704-b669-d57d1aba9404",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56818 does not affect version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp. not_affected \u2014 Version 4.1.82.Final is not affected by CVE-2026-56818. The vulnerability exists in the maxElements limit check that was introduced in version 4.1.135.Final (commit e51c64c964). Version 4.1.82.Final predates this security feature entirely - it has no maxElements configuration, no maxElements validation check, and therefore cannot exhibit the vulnerable pattern described in the CVE (throwing wit..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47412915-d923-5a53-a782-f7aa0f73a818",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5dc02ad1-73d6-5909-94a3-46c4b4c6ce9f",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2599bdd1-d475-5b30-aef6-da18c966bcd0",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:088f8799-c805-53e6-9dbf-ac6ead3fcf72",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee26814f-7581-59fc-aee2-8d3a0927a2c0",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02e04662-dd02-5140-802d-0597570ed96b",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:471205af-6edd-561a-8f0e-8e4ec6601508",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bcd6a90b-618e-5710-84eb-6f45d2ad070e",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d59104e-6c17-5c23-99d7-607d45d48ab8",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e456bb3c-1aa9-589c-a1df-95c9fc2809a6",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdc256ba-2fe0-50ff-89d4-fdbdbb8db8a2",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.82.Final-tuxcare.4 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.4"
    }
  ]
}