{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7731efbf-f815-52b0-ac77-53996b13dcf7",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-stomp",
      "version": "4.1.82.Final-tuxcare.6",
      "purl": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:6da131de-2b69-51f2-a1eb-a3bd17fc976a",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76cb0973-a842-579a-a910-05d783f07405",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72a81eb9-a40f-5a62-8e3f-bdd1759be293",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b19807e-1695-59e0-968c-6ee207c38b4d",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a2d77d4-747a-5784-86c8-67c8dfb832c9",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-stomp 4.1.82.Final-tuxcare.6."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d60ef6cf-061f-5aa6-8576-8b14668c7497",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fcda074-396e-5e9d-8904-b7177e24651e",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-47535 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd9e58b5-0dc2-50a5-971c-9ffe87243425",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dad7403e-f494-5b05-b6f9-436df8cb6769",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb08683f-d5cb-57ca-a143-a1d9c511f529",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a37c494-a909-5e29-ad4e-70e48b37e53d",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51c38f5a-c4c3-5af6-b828-55e3f102ae53",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9df54f65-981b-50da-b0d5-6a0c582c6575",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9cf07a5-6e44-5d3a-9076-b9758aa453c3",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:997cdb0e-2efa-5c12-a865-69e8fbb98833",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:865d7144-c21d-5a6b-8895-9e6587313763",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24bfbcce-da18-50ac-b063-6e149050e959",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fecafc5-d26e-55f5-8358-1efa912328da",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b26a514d-9a1c-5890-bdc3-f2a1464378cf",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b59c3d3-8792-501d-89c4-761d6e3223a6",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82b4dcb6-e1c7-5218-bd39-ce48c45030f8",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed5efeaa-4ec8-5a86-ba9b-746274660e2b",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e7ee364-d481-5652-8e23-dbdfc2da5426",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c80dc19-443b-5b83-9249-050575bbeefc",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0866970b-a38c-5df1-a06b-ccf47a02b304",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02c36495-f21a-5ec6-9b85-61e089ffb4da",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11db7c55-6b4e-51c3-9383-5dc10e966dde",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32fd6be7-76f6-5ef4-b667-e97340b5ae1a",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f87bd4a8-ea58-5076-9f83-b94605d57266",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99239064-9df8-5262-ac67-fb4ad962dfde",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9730a1e-b018-5704-9437-56e38b1a5f51",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67a20fb7-3c16-58b3-af00-c48fc3c9243b",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa86c85e-26c3-5044-8b3c-833c56c34961",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:030ac53a-296f-512f-a035-da954c4bdbf7",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4b0b9ca-2a77-50c2-aa1e-244d4de3c966",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d8b6e43-7f61-5b12-bdae-52d2ec4a8089",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8fe092a-53f8-55ca-a342-dc656f7692df",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b59fb1ea-5543-5581-a97e-632691f411a0",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:136b503a-fd02-5d82-9844-c60250e14fb0",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6fa8b0f-06d0-50dd-9f3f-084e5c75ef1f",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff94055e-a095-5659-bccd-7777f7624799",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d92ef28-e9d4-536b-9902-dc9c55cdf972",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48043 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de0f313f-8b70-5ed6-8720-d167527facb1",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73e5543b-1695-5075-982f-c12fa61b06f9",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63ed6333-62fa-503b-a3b6-052e3761c499",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ac44573-5d18-5d24-be99-641beb80b91c",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fac1beb-07b0-53eb-98d7-3c5ba5b621d1",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc39079e-3d2f-511f-b853-6b36e6bae187",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ff745f2-2e80-5e21-bb27-165ff35b6d68",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:045f6bb0-58b4-560e-be7b-a1e433b4bfea",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cc8e7b4-1ef1-50d7-b5ae-6db373bad10b",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f40adf9b-e61b-5bb5-973a-186d815e5e43",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3ebb5ac-7cb7-56d5-b69c-bbf290d4da96",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31866b5c-ea37-5c8c-bacb-e4e59c1ecff5",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56818 does not affect version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp. not_affected \u2014 Version 4.1.82.Final is not affected by CVE-2026-56818. The vulnerability exists in the maxElements limit check that was introduced in version 4.1.135.Final (commit e51c64c964). Version 4.1.82.Final predates this security feature entirely - it has no maxElements configuration, no maxElements validation check, and therefore cannot exhibit the vulnerable pattern described in the CVE (throwing wit..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00919d87-efe0-5793-a080-5c601942e94b",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ff1b151-00c9-5e51-a0c7-a62d6e3e6c80",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8b9710b-6379-513e-b4b1-4d99bf211378",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86cf5653-09df-5df4-9a76-0ca9d43945f7",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84b6f5eb-d8e5-5b58-8370-8df396d793d7",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91464a48-3325-5438-9c01-afbfa06c20ea",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:711e31db-5c10-534c-95dc-c0d06b75b5d1",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8293af13-a87f-5f4e-ba1f-5a02794dc92e",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec09e9cf-bcd4-5fb6-8c94-edf0c1356fd1",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:714f770d-8b66-5a4b-adbe-26b8133be732",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4aa2aaf-ff70-5d99-80ca-90abbc9b6133",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.82.Final-tuxcare.6 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.82.Final-tuxcare.6"
    }
  ]
}