{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:36e21cc9-cd35-536b-bfca-a47643ffbed5",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-autobahn",
      "version": "4.1.63.Final-tuxcare.4",
      "purl": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:a010c76e-b9e2-5885-a898-3e0829b29ee3",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0d78858-49bf-5497-b741-c0b8d1216c2b",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2e02699-72c4-58fb-8470-8bbcbf62f3d5",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8dd75093-fa94-5d2d-b1ef-f4bd64693458",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c112dc98-1e65-5b92-a2b1-8d044949c627",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4245924-209a-5b73-a01f-b90a138d6aa3",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41915 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c6e6c6c-49b6-5f8e-b232-1549ec3a8ecd",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a5bc04e-a8b0-59f5-a7fd-0318beb747bf",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bc833f5-1d58-538e-8179-8834d37b3acd",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-autobahn 4.1.63.Final-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd669409-2cad-550c-bcc8-4b74a0391555",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1fbef985-6ec4-5193-8165-1c615cad91cc",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35323cc5-2268-5eba-807b-8e3230711d4b",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49386c3c-728c-5236-b6cd-3b980551aba5",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de0a9baa-e50f-59c1-9f13-a0b8c41e8fd2",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8496d78-e2f6-58cf-acbf-fd037f968e70",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd3af5ff-2a08-55ee-811b-6577a8b4637a",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:943f62b0-548a-5c7b-b38d-95e1f57b5793",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eba4d3f5-8913-5155-99db-6af3e4554522",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5c53e8c-9211-5830-b58e-03489994ae7d",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7db3d2df-5012-5466-8586-317298502131",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9e5130d-013a-59ac-b31c-d7401e52bb15",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31fad130-edf1-588a-bf59-68cf82279bce",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ea5e5a9-d84c-54e5-878a-dd26bfbc3992",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36e0bc54-7508-518b-9328-2d961725677b",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0eea7452-c2d8-5940-9129-ba7c2391ed60",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bdefc53-9219-5a6d-ae3a-9160710b9b8d",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6809a77f-959e-54a6-a0d4-51a0409f911f",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8a44066-abd6-5276-a07e-8a09dae3c2f7",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fd60344-3cc8-56a1-a9e7-f71b335949f4",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1dfca9c-0888-5468-8366-89f1d6a4375e",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c43365f-9f17-5a58-8912-14c53500e46c",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0155c1c5-43ac-5fb2-a8c1-084f0b459768",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2b29cc8-c427-53a4-a51f-7fea19a2d1da",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c9eacac-671a-51de-b4a8-dcac5a016d7d",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb359942-0372-573d-9e68-cafba4997678",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed55e6f0-9a35-5b84-a031-ed0d9f82b70e",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72895ea3-8576-5de1-9227-81ec0b28a2a7",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ddd57e3-7e0a-547f-93ad-03deef841c42",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fede019e-2b41-5920-8231-8b1dc4c4ac1a",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f54a6bf-93fe-5673-bd49-06cb440185fe",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17d7c57b-57c8-58bd-9ba4-5f55e5456a1e",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ef05ac5-9c89-54bc-8970-ba0057ab6e6c",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3742bb6-f8b0-58b1-8472-caa035f03575",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9443671-3bbf-50f6-81c6-744f67c679b5",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:654ef2f6-9778-5a3c-afac-f28b229bdb4a",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5dd7ee9-166f-5c6f-9444-b73d0531de32",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48043 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:207a1b43-204e-5212-9a5e-762c6e602f02",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90a54927-cfc1-5550-af29-5515e7fd3449",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c77c8c30-e6cc-573a-a8da-0e5952a81d37",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c757d5e-9eaf-566c-bc94-9cbd0ad7545e",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8bef94b-07c3-58d8-bbe8-3e00f7609154",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2cf7e393-56c3-5a45-81dd-5f73070e53c2",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ede9874-ef71-50fa-ab21-44589025daba",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8dab0fdc-3dda-5df2-94cf-64fa5caffb66",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:039900d4-e98d-521d-9c83-2ba2dda9dac0",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:798c592a-8be4-54fe-842f-3906110ec316",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7dddea8a-443c-5ea2-8e90-c4f719a00e21",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56817 does not affect version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn. not_affected \u2014 The Netty codec-xml module contains XmlDecoder, which instantiates an Aalto XML parser without security configuration (line 38: new InputFactoryImpl() with no XXE protection). However, this is a library component that Netty itself does not use in its own production code. The vulnerability only manifests when downstream applications explicitly add XmlDecoder to their Netty channel pipelines. Per..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbc96cb3-03dc-59b3-862a-eaf140905151",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56818 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb00cc21-c92c-5489-8a18-9739a23d7f19",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eca38d49-78b6-5fef-ad32-0f7570906d27",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e30b952b-40ad-5450-9365-a20387a8bbda",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef490e36-fa7a-5e5d-9c6d-1ee66bf4d7e7",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80d2a042-705b-54b8-a044-1d25783b5385",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:595cabaa-c824-574c-b9c3-a429e01e43a0",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1eb1e5dc-1233-5053-bfbf-71f49e894766",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e77ade98-daf9-553a-a3c7-d8978d3ca17a",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b99a7ad-b924-5fb8-8b0c-65eb4c34e742",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7b19ae9-9db4-5c4d-b836-37e5a37e16c7",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbb3d74c-4b0f-5f80-96d5-6179d3dc7d90",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39e2b12c-5d67-5103-a724-b7260d2b1fdc",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e4d47cb-0168-5a12-ba80-bbd62262820a",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.63.Final-tuxcare.4 of io.netty:netty-testsuite-autobahn."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-autobahn@4.1.63.Final-tuxcare.4"
    }
  ]
}