{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0581eb93-5115-539f-9467-0389fac0b574",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-native",
      "version": "4.1.75.Final-tuxcare.4",
      "purl": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:bff94507-f26d-5eb8-b3f9-c42d253b34d9",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd083fd6-b113-515c-91f7-cb5c0af60266",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0efe090f-1c43-5208-a741-2ada49baa2fc",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a82b607b-d02a-5988-bf51-a9300e75825a",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89ec1e70-9d16-5ee2-badf-a94f4385a5e1",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d0340d8-0a2c-588f-af59-4013a087046f",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-native 4.1.75.Final-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:775d44e7-56ef-5ab5-9328-453cc91881c7",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f454d3a0-dab8-58ba-a228-abab3e4ed7a0",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b7d4607-591e-502e-8aef-bab84cae8034",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b151b93-e581-59c1-b8f3-086e91e2e0ba",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0635ea0a-dc5f-546e-82ba-d56a0ba92eed",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6e4047f-ac07-5101-887a-3ba7ed61fedc",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a05cec58-694b-5085-ab23-6a90fd1383cd",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37c04cfd-4e2a-543a-ab22-c9657360a3a2",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f7e55da-efaa-501c-be5b-d12d90b33eb2",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f53be04c-22ff-5654-a73d-6fbc820663cc",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fcd81df4-caef-5abd-bce6-939bbb93e9d1",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7373b83d-e23c-518f-80e4-0f650fe19a7c",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fc02c08-6f3d-53c6-a8d9-b2e9bf1b6893",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9d69aaf-e0c9-5dbe-bba5-25520fac3567",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:553104c2-df98-5c23-a614-c9e5c2f408d0",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:242c8729-b106-5db1-a509-99fcf22244f3",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00c444cc-9ebb-58ce-8678-15e61ebddca4",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8907e714-923a-54eb-981e-63d8d21150d9",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6118cc4e-cd3b-5416-9f95-bf9146524dbd",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:168f7ad8-21ba-5e9b-ac38-631c113aaf51",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7dd69df1-b737-5e80-b241-26e1faebc637",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60af7856-af81-505b-86e6-c67d4a0d7bc4",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0dfc385-2b45-5608-aaa2-27c0d7d479b1",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d1d1248-4055-5052-b007-82b6eeb0e034",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35d55b33-36ca-53d7-b71b-faaec553a1a7",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1968bfc2-c79c-5cc2-a932-b6b5576d74e8",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97d45be7-495f-5f0f-8000-81568bc329b8",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51e8f9a8-91e8-5bb8-94c4-90df4f972c3e",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87d6a321-7935-5371-976c-2c085c4d3722",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b23a361a-53cf-586c-a883-4b4c4e24e3cb",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30b89e45-b0e5-5d57-ab46-9b5fbe75a3af",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bbce19a-5e1a-50c5-9b74-967fc9ca6bec",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc5a4181-b6b8-5957-8d9c-49b8988bf70e",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc838013-14f7-5ab0-af7f-79b4927f752d",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:add4ba0a-1b35-572b-aaa5-90ce4be241e9",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3787794a-710d-5f56-a0c7-763cfdba6fe0",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:535ca174-94b8-5883-b3c8-f130a2d52124",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native. already_fixed \u2014 The target repository (Netty 4.1.75.Final-tuxcare.1) already contains equivalent protection against CVE-2026-48043. While the upstream patch targets a newer architecture with a ChannelInboundHandlerAdapter tail handler (introduced in CVE-2025-58057 refactoring), the target's older architecture implements the same defensive pattern: a try-finally block ensuring ByteBuf.release() is called uncond..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36041203-a9ab-5836-9da9-233522e69dd7",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a568300-1df2-582a-9991-574badd23724",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33257228-b32d-5066-9161-7f55a4a8b9ca",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49255a8a-6212-5952-aba5-c65642fb67bc",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21046304-83c6-59d0-aa36-f92979e8f512",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da8a5d97-61ca-5d91-a2d5-249593f316f7",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a8cc6c8-6dc4-5720-a1d6-5934a5d819bd",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebbe30e7-9597-54ac-9cf0-a1bc574ee0e8",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71d056dd-b4f5-56f1-9bc3-f151beca381f",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28eee3c8-e0ac-54f2-ba33-53ae2af8e5a5",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c54f4b9-92b4-5184-95a2-405aa2e3cecc",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed20fb11-a32a-55e6-988b-1056ee010e60",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56818 does not affect version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native. not_affected \u2014 The target version 4.1.75.Final (released March 2022) predates the introduction of the vulnerable feature by over 4 years. CVE-2026-56818 describes incomplete cleanup when the `maxElements` limit is exceeded in RedisArrayAggregator. However, the `maxElements` configuration parameter and associated exception handling were introduced in June 2026 (commits e51c64c964 and 728c98b8ec), neither of wh..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cb01846-0959-5444-a55d-1326fd53251e",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e01a187e-3f65-5df5-a86a-94e43009df4c",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3336303e-97e4-5761-aacd-e9d8b5604658",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8430fc81-5045-5433-80b8-825a9b9ec941",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbf0e99f-4c32-508b-840e-7381ff0809ca",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2aafcd3a-6ad5-52cd-92c9-bd5289d3b97e",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef76523b-8e7b-5ea5-bad9-179e03eee5b5",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56b0ef23-39b7-52fa-a255-76a79b99c015",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3421ca7f-53d2-5f6b-be68-1e3393b75eaf",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:493e858f-fb05-59df-9ad4-5ba28e620e27",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2806259c-0fb9-5710-b7a2-29304714e263",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite-native."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-native@4.1.75.Final-tuxcare.4"
    }
  ]
}