{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:89a908b6-86a1-59a8-81af-b74788f8093c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3",
      "type": "library",
      "group": "io.netty",
      "name": "netty-microbench",
      "version": "4.1.73.Final-tuxcare.3",
      "purl": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f60e534c-99e8-5dc9-ae9f-74c32048d91f",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b736530-8679-55c6-bfd0-b88fbb7d98f4",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4852ed7f-4d32-5549-bc8f-c2f5ba87efe7",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:410715c3-3a12-5443-ba5a-b3c3eaf9363a",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73c3c1db-975e-5995-b6b5-8d6a48a77230",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c4d000f-8d79-5ddc-a50c-c8791a8cad5a",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-microbench 4.1.73.Final-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0dd7e01c-5e2a-5c13-a8af-fdee868e11cd",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba4172dc-b20f-5b1b-ad14-350fd4c417bc",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:116c6ce6-cbf8-5fe3-8e16-6408476d224f",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66108276-ceb6-506b-8492-8fd5ae3e5ddd",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e904845c-3208-569b-a138-c9eecbb29e11",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e56a477a-ca55-5c94-ba26-b2cf28e0c293",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe6733b1-e486-51c6-9ff0-6d1c244ccda1",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d3a38cb-2ff4-52ce-8418-d059c9264314",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76cabfd5-6035-52be-8a48-76ac17149227",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:adac17f5-437b-509a-8fd2-2823d1e981cb",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17dd83b4-aa8f-5524-88df-d243c59c68f2",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c137484d-ae43-50e7-b381-a4f3e099e398",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11df292b-2e42-590d-bb45-1256460e12bb",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd746975-4d1f-50f7-b53d-958d034ce3db",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ba106b4-5cd8-5dfc-a2e6-4ab05a7ea4a1",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:997640d8-1202-5f0b-90d6-646df88ba70d",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a6eca01-e688-52e0-a868-3c29e06d9f0d",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f758dec-8894-5bf6-b1ec-55b49b08a087",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:030d7f13-241f-5250-a50e-06b9dae5400c",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b927ea4c-fea4-5bae-8d79-a441af26ad82",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:919f8858-2a85-536f-ab14-fcbe51ed31f1",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1ccc780-ca0f-57f5-a0b9-bfb79ee55bae",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66743f58-1d5e-5b93-95f9-a1414d39db1e",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4a7463e-50b7-55a1-9720-2e14afb96df9",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4be678c-b7f3-56cf-ae2d-de7120371cc8",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7a5d482-68b4-5071-aa72-0bfbeadf50c1",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5906f55e-e317-52e3-9194-491e154db626",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a2684ce-650c-54e3-b258-9987aca4efc6",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:adb9ba16-8de6-553a-bd8a-624e07931c01",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90e9b04f-b3d2-5477-844f-21d4b4b55a7c",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:480cdc7c-3c80-5226-bfd2-f02efa2f6937",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3bdca380-4f9d-504a-8d79-2bd82d1ea475",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35a629be-afe6-54b1-b969-15b68bd3aeaf",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6bc87a8-c60b-52e4-9a96-aa65aaec093c",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c44c507a-498f-58d1-82ca-a937e0df73ea",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1835a18a-234f-568b-9a63-2ba145c86479",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c05efac6-800f-52c6-8112-fa72ec99feef",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench. not_affected \u2014 Version 4.1.73 is not affected by CVE-2026-48043. The target uses a loop-based architecture with try-finally protection (introduced in 2016) that prevents the buffer leak described in the CVE. The vulnerable ChannelInboundHandlerAdapter pattern that the upstream patch fixes does not exist in this version."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67b71463-645e-5cc1-aedb-6246f2cf5ea5",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27003152-efd6-5eb2-bf02-0a86a9775277",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1832254-ee4a-51b6-ba72-283874f087c8",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cdabe06-e08f-5434-bf3e-aa5014262ada",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aefe020b-6ef3-5cda-ae15-c8cfa204e058",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7710f9a5-5ebc-5bcd-a95f-ea475f5c5538",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a11df1bb-6315-53e9-907d-bdcdca64c639",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:370cb27f-1b9a-5db8-a8b2-c50a254b9e43",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05e54500-e5aa-5c5a-87fd-bb659bc5f8de",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31742134-bbf7-5da0-bc14-b0d4a63cab53",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0947076d-05b9-5a7d-b455-90143c62ae37",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d81553b4-b468-5c9a-86c3-c8234f3272c5",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56818 does not affect version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench. not_affected \u2014 The target version 4.1.73.Final-tuxcare.2 is NOT AFFECTED by CVE-2026-56818. The vulnerable code pattern (configurable `maxElements` limit check without cleanup, contrasting with `maxNestedArrayDepth` limit check WITH cleanup) was introduced in version 4.1.135.Final through commits e51c64c964 and 728c98b8ec (dated 2026-06-01/02). The target version predates these features entirely and does not ..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffc25896-713f-5ca8-a23a-999c06fae85d",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03668b13-d96c-5bcf-a613-b2ebf534f3ad",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06ef92be-4438-507a-ab5b-86c496e7dce2",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1ce42be-8c38-58cd-8469-b7073201abae",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a2c5b31-5e35-586a-918f-684203aa767a",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:537d2f92-db1d-58b7-9557-4036e635d9f6",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b97729c-02d2-53bc-8693-7952754f049b",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:242a69f9-bf5d-5492-b89c-81572126178d",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bbc566a-ad69-5dfd-bf39-b2a1a8092df7",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60159d70-b85f-5632-a92f-c01fc633d918",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a09a5665-d72f-57dd-8447-baf1a2d4642f",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-microbench."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-microbench@4.1.73.Final-tuxcare.3"
    }
  ]
}