{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:e1473e4a-2f31-5be6-bae5-6ee99cf136ff",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-smtp",
      "version": "4.1.115.Final-tuxcare.3",
      "purl": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:084d9de2-4084-53fb-8bc0-7408d6b288fa",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47b367c1-f407-54f1-8cd6-d9056297043c",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3a771c7-ffba-5654-b385-b9bc4b6d0885",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81ab187e-064c-5d12-a586-db1da43c78c4",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:690e235a-c696-5705-a845-00765a73fa5a",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b8bdcd5-751e-5550-932f-afa7c4b35f6d",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-59419 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:edb7fba1-2a2d-5295-95ef-1ec8aabbd15c",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4acdb1ce-346b-5d49-aca7-1c3e37d1b095",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb0d81df-37b7-5dfe-80a3-755cce428341",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.115.Final-tuxcare.3 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.115.Final-tuxcare.3"
    }
  ]
}