{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:bab85d91-aaf9-56d4-b381-3a5850757810",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite",
      "version": "4.1.75.Final-tuxcare.4",
      "purl": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:92cbd004-b464-5371-8789-e8ae9bd9db54",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44158703-f63d-56a9-97d0-553ce642287c",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11f44114-ea66-5b2a-9675-bc458b686dfa",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:110d89a7-665b-59a8-b4ae-b279980b4031",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6757caa4-5215-5dc5-b433-b957d6fc4c99",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab30bf8f-e723-5ced-afa2-d0583b86db43",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite 4.1.75.Final-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d248cf8-c20f-56a8-9312-683f1e94907b",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6814e9b9-e530-5ba8-9dfe-e1b1177c3257",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39c50f15-2d38-5c55-8d3e-762f51118b78",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fe1500b-9dc7-5b3b-a42b-263c74ac4f2e",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4422501d-4385-54ec-afeb-10265fc5291f",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcc115af-af28-5959-a7f7-b1d84b69bfad",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b94cbae3-1f36-5b4a-97cd-31733ebc8176",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4de78566-8d5b-5307-95ca-85c196030744",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2a30bfb-fcd8-500c-bcfe-8ea923e94bb6",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5dd84cca-4eca-5f41-ba66-2192e509cfd5",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bac72f54-4024-5e69-87b4-4836cfc86521",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21cc3665-4a11-5223-902d-153cb5eb2cef",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c31dbc6-783c-57f9-ab69-47e93c5f99df",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e086e4e-c9a7-52b3-8282-ba7f98f21ee9",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62a083a2-fcc6-514e-8818-fc8776be0e5b",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3c6ff4c-65d4-5923-bc53-4326156c4d15",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9ef060b-4cd8-5378-8685-4cd06aa6fcca",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c056e8b-7e0a-502c-a28f-d040742a5fb9",
      "id": "CVE-2026-42583",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42583 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13e560c8-4a0e-5829-aff6-a78316f5f5ad",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de74e2be-0d75-58d6-ad9f-2b90757d3368",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab8ab9c5-d6d5-517f-9af1-211a23574880",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1eb9c838-8731-5c06-8b55-7380e62ea49c",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3a1705b-0176-538d-8a7b-785da75bebf3",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6635be7-008c-565f-963c-cfb65e4ec3a2",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28285337-899b-5d2b-af0b-2cf4276e33c0",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e43f07e-0d4a-5461-ab74-c5a474b2b174",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44890 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55c52aba-10a2-5976-bbc4-c4907d4e81af",
      "id": "CVE-2026-44891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44891 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:506abe80-d0ab-5c14-ac8b-ab96fba0cd4b",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66842b95-338e-5bde-ab1e-7756aa151a99",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94e5f13c-c0a1-5738-97ef-92195a99e1c4",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b06030f1-ab46-5d9d-9cdd-b686de50f757",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39af51ee-0b94-5471-bad3-dda665b8b29d",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f61d3923-bde4-552a-b6ba-9cdad1215ccf",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46340 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94700f6d-7624-566d-b065-b8ab14ee6e84",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6cbbe51c-734f-5f71-b8a6-fe3c39bc6ce1",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56ea54e3-7f42-5118-93a0-e8a108c9e64c",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c251d46e-196e-567f-832d-8074736f1e36",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite. already_fixed \u2014 The target repository (Netty 4.1.75.Final-tuxcare.1) already contains equivalent protection against CVE-2026-48043. While the upstream patch targets a newer architecture with a ChannelInboundHandlerAdapter tail handler (introduced in CVE-2025-58057 refactoring), the target's older architecture implements the same defensive pattern: a try-finally block ensuring ByteBuf.release() is called uncond..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb44de2a-63f4-5b9c-bbe2-0e74eadd8122",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00477b21-f2cd-5079-9e25-c4c474c8b3ca",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23313c60-148f-5b34-bd02-7acc4b9df6c4",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0afdd2ea-da8b-5e15-99e5-cdd4c4e4d6e5",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0173e5e4-6ac6-5bc2-8139-f33a6910a838",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50560 is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3aaaf55c-fce4-5350-8e4c-582b1840bb4a",
      "id": "CVE-2026-55831",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55831 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1269af2c-bcb3-5539-b918-f231e48787f1",
      "id": "CVE-2026-55833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55833 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2a97d46-625f-51c9-ae2d-b10881c72d97",
      "id": "CVE-2026-55851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55851 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0540947c-7b81-5f2c-b767-ff3d587f5884",
      "id": "CVE-2026-56745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56745 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f165eb1-d36d-5689-aae9-186bebc2efbe",
      "id": "CVE-2026-56746",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56746 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a92ed609-ff08-5a85-914d-49d5103bdfa9",
      "id": "CVE-2026-56817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56817 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5267d3f-01f0-565b-9e1f-cec568365e2d",
      "id": "CVE-2026-56818",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-56818 does not affect version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite. not_affected \u2014 The target version 4.1.75.Final (released March 2022) predates the introduction of the vulnerable feature by over 4 years. CVE-2026-56818 describes incomplete cleanup when the `maxElements` limit is exceeded in RedisArrayAggregator. However, the `maxElements` configuration parameter and associated exception handling were introduced in June 2026 (commits e51c64c964 and 728c98b8ec), neither of wh..."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be64dca9-3fed-5e8d-a43f-aa81aed17e1e",
      "id": "CVE-2026-56819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-56819 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3b653c3-778f-5e66-90d7-03b075c97d63",
      "id": "CVE-2026-59898",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59898 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f099dbaf-4f6f-5a7f-8fb6-24172eed7c33",
      "id": "CVE-2026-59899",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59899 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b4b39da-3dad-5a92-91e9-9974341cbdfb",
      "id": "CVE-2026-59900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59900 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3d9bd7f-2e70-5a4b-a6c1-e28dc998d198",
      "id": "CVE-2026-59901",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59901 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bffd3a07-bffd-5eee-af1d-2eb424bd1ba7",
      "id": "CVE-2026-59919",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59919 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61e23b11-eec9-53d7-978c-1442d8f2f14c",
      "id": "CVE-2026-59920",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59920 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e4ce770-5101-5904-acf2-4feab0734a19",
      "id": "CVE-2026-59921",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59921 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a686c9f-5f04-5cf0-80e9-e02ae14a2ded",
      "id": "CVE-2026-73507",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73507 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d60c2a2-0c97-5a3f-8dc3-00f939b0a40f",
      "id": "CVE-2026-73508",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73508 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9e96ce5-aff9-5159-be03-6d85d366a1a6",
      "id": "GHSA-mfg7-5gfp-c4w3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mfg7-5gfp-c4w3 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6044cddd-1d66-545a-8667-807183ba069d",
      "id": "GHSA-v74w-7mr3-4qg3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-v74w-7mr3-4qg3 affects version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5860ce86-e192-5a1b-8b3c-8737d336cc4a",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.75.Final-tuxcare.4 of io.netty:netty-testsuite."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite@4.1.75.Final-tuxcare.4"
    }
  ]
}