{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7572c21a-23cb-52f3-aacc-50d8dbfc730a",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-http",
      "version": "4.1.75.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:1443a212-efe9-5a08-8564-8278d798769a",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0058715-7b90-5cf4-b4b1-cc5ff0edfa5a",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab6f9e90-c12e-5185-95b3-7fc3038e34bd",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02f1f598-1d14-58db-a94d-03168a139628",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f9b7d5a-7a82-51b1-a319-fb8d61dd6d67",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fad92b09-b9bb-5717-a403-5ecae4f14bfc",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-http 4.1.75.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d8bd1af-5ea6-511b-b4dd-b56c30c549df",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dadfd330-3301-5d44-b0d3-274f6b7e95c3",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10a080b3-06c1-52ee-a4e2-19ea4fda2638",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a5e29df-e637-5dfb-9986-889419f94b46",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab548507-c847-5ed8-9418-8f7193a719cd",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c615eb3b-7331-529a-bf3b-db7c88efef3a",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36918d26-a040-5e73-89f5-4e616e214b25",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d806d066-c33f-5874-8269-b3efd6dc91ea",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f241046-24b4-5c28-85e1-f7abed188e15",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0bdf83f-8bc8-5f29-9819-114e833f1ba5",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41303962-fcd1-5398-b20e-155f0bef2f4a",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fe4cc2d-bd41-54c9-b6a1-bad9a91a495e",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d08d0aeb-85ff-5ba8-a4be-ccb8bb1378e0",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d963c74d-d181-54a6-9cfa-e514b937286d",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ff4d44a-3d21-540f-88ef-4b7d65e6cae9",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a6a0645-fc69-5925-934a-4e71e73d4684",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7206cf44-fded-592b-8fb3-48b4d2b77d85",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16d3c6a2-c499-52b2-ac9b-89f4130f0917",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:095782de-fef7-5b95-ade8-26ea71f9d7ff",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9554d900-88fe-5766-ba93-de0730ffaf03",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ef72493-c1e5-5aa5-b544-b88b191b8525",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b905e6c3-0422-54f5-a0fb-b376b18e2374",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6b42a9c-827a-5ffe-ac4b-3284ad139d61",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbbd803b-08d1-5b9c-b71d-66982f2bb515",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbe60c91-c058-5a8c-a47d-8b9549112530",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bde83374-e6fd-53bf-a04d-c5a15b12b90e",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d44df587-6303-58b0-9f23-5587d7e1a375",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee8103dc-dcef-53b6-9a1b-02726c04523e",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8008e9ed-8d0b-5ad2-9d98-20cf4a202a83",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b3017b3-5ea0-582a-ad0a-7770a8dd1fc5",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c30e6ba3-273a-5d09-b45f-525d9914de45",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49232490-f7d7-513f-9617-a70591180f43",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92502730-0965-5d6f-8e51-134e77d30431",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a061e50-69e3-5bf2-b9ee-e9aa045d0b2a",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8aafbc24-4324-5719-9cae-18efe4e1c297",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48043 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e438165-2935-5a8c-a30b-f1072dad67cf",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96aa4581-4a47-5fdd-a7ea-a814383411bd",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.75.Final-tuxcare.1 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-http@4.1.75.Final-tuxcare.1"
    }
  ]
}