{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:233e031f-b53b-5426-9659-14e14bbb121c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-http",
      "version": "4.1.115.Final-tuxcare.3",
      "purl": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:961ab33a-cbcb-5e6a-a420-f836c87a2774",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39532011-0583-5ed6-8b1a-13c2b811f2b1",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:971dc86c-0694-572f-816e-f0e036a9dc98",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85b0e8bf-a124-5cdc-95cb-6c200305ab6d",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ef4188c-8f1d-5a1a-9b3b-a7e7aeced7cb",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18532226-03de-52d0-8289-e800361e8873",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-59419 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:413f4583-591b-5742-a453-b21309fdcd67",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0645b7c-09d4-528f-b07d-685422cb5646",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64746199-186c-5d66-815b-c014985f23eb",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-http@4.1.115.Final-tuxcare.3"
    }
  ]
}