{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:721c8a23-97df-5d3c-a5c3-1ac5c48bd8cd",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-native-image",
      "version": "4.1.73.Final-tuxcare.3",
      "purl": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:024b79ff-9528-523f-8f27-bf1338c4d547",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21dc5f14-5667-50e7-9659-541b11c36005",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ac01a71-8f07-5b96-9f43-b81d54d8a7df",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb77428e-99e9-5036-8a0a-9310b11d3d3b",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:226edda1-f3c0-5513-ad90-a2f774c539aa",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26c47abd-0790-55e9-a8fd-b86545d98c36",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-native-image 4.1.73.Final-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6068aab6-599b-5b1f-8aa8-4d68fe9648b5",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c5ddb20-961c-5eb9-a12d-a8eae6db5448",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9b46fa6-66c0-59f3-a852-f11689e1e930",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c388e9c7-6161-5bd2-bbeb-b16bd70c0908",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b01a089-ee56-5110-a988-2a6e574bb211",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:243aa856-fa80-5bf4-86e2-104c8ea0564a",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4204baa6-727a-589b-b22d-6e46772222b2",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4c47ee6-3475-5eb1-98b3-466a065e3c02",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a67e0d5-78b3-59d1-8b2e-67c05e14f945",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3fd58662-3f15-58b0-b361-1a4bd0878954",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b2c9c45-12a7-5f61-80ee-4d6702724774",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0000bab5-58f0-5060-80e6-6a7dc8b722ce",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4a555e9-9f6d-59b4-becb-6bc3915baef2",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1afc550-857c-5497-999b-540aeed263fa",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee794e59-5845-5dc9-87f1-f112b06a429f",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6aefcb4-57e7-5c89-8824-d09094bb8e7a",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e20f0dbc-b2e4-5e83-a3d6-2f7ea512c138",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98dfc319-9f7b-54b8-a971-5213d716a8e5",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f3f6c88-4354-5075-89d9-a2ea176eb20a",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a300f48-6738-5352-9396-60ede7d958ec",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1a30757-eb94-5af6-b72b-7c91e9ae074f",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41ca84a8-caa1-5325-b0d1-c5b4f8a5edc8",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e116e906-99e3-5cdc-a582-462311d5fba0",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09bb1be8-abdd-586b-890e-af9e8e07bb32",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43d5be72-2efc-5f42-a5db-c39d4050b9bd",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d411a8a-d930-52d5-9532-4628e9622599",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d3a03a3-14f3-5f1a-89bc-1ed71338f358",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:604cbf74-8afa-5406-a5db-32823e993d3f",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e26bcf6c-2851-5864-9e35-f574c33646cf",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7b52386-0cbe-576e-b415-9d528e6c207b",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5520f018-9b3a-5a33-b50d-edd015ec84fc",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:884c4321-d40d-5011-9baf-1578c6c46e1f",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d19581c5-9158-5623-8b08-414302714aa3",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28b7386b-037e-5c24-bb0b-c558178845cd",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be1a3d10-14c7-54c4-ae64-3868aeb7acd4",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ca491f5-8299-5a6d-b1f9-6cf5772a9125",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cfe8a7ff-b626-5529-b46b-71c323c47af5",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image. not_affected \u2014 Version 4.1.73 is not affected by CVE-2026-48043. The target uses a loop-based architecture with try-finally protection (introduced in 2016) that prevents the buffer leak described in the CVE. The vulnerable ChannelInboundHandlerAdapter pattern that the upstream patch fixes does not exist in this version."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd93040e-0f00-5777-88c6-a5063e91ed20",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a76a63ff-0950-55a1-a8e0-d91cbac343da",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0ecbbf1-5fca-5b6c-9f27-7544c9ce91a9",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a422d14e-db10-5488-9d8a-084f331e8225",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3073cdda-a761-5e20-b672-03046ad52ed6",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d49401b8-b3a8-5c6c-b0b6-09c86a06ead4",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e85bfad3-2490-54ed-b051-1b8b064f9b79",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d511154a-b278-539f-a3fc-2969fea56961",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2cc824b1-8bac-5e45-ae64-8cddb1cd82e9",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71024e32-48d6-5d1f-88cf-7ee6b0e08dec",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21c7a62e-d849-5701-9a94-4010bc6ebaef",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed821056-776a-5f61-a8d6-f8849d023d29",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56818 does not affect version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image. not_affected \u2014 The target version 4.1.73.Final-tuxcare.2 is NOT AFFECTED by CVE-2026-56818. The vulnerable code pattern (configurable `maxElements` limit check without cleanup, contrasting with `maxNestedArrayDepth` limit check WITH cleanup) was introduced in version 4.1.135.Final through commits e51c64c964 and 728c98b8ec (dated 2026-06-01/02). The target version predates these features entirely and does not ..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3a7faf1-08c9-5db8-9904-2c80d0bdc8b0",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ded99f32-21ed-50aa-afee-e4f9bbe4cf0a",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2565ecc4-8e6d-53b8-b14a-2b12c774b584",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a77c7806-49a1-5c8a-839c-fa66b679fd6c",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a50223a-3543-569f-98b1-fb600ea8b961",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:288b494f-eb4b-5890-a459-ab9ac9a58a4a",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6ecbadd-2e19-5095-8531-d3a8feb78620",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce26a9b4-09d0-52fb-8e20-c88e8e48703f",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e41cfb61-8b7d-5f85-91f8-3aec62b62033",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60bfda21-0c96-5626-b3fc-4fa2fe0ae997",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f55d3d3d-e7d7-56c6-a2e7-5e0a92548e29",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:060693dc-35c1-59fa-b1ea-8131f9847d27",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eef58617-d7dc-5270-9b2f-59379ec6c779",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.73.Final-tuxcare.3 of io.netty:netty-testsuite-native-image."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-native-image@4.1.73.Final-tuxcare.3"
    }
  ]
}