{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:8e319a8e-55cd-579d-a8cc-45de16d0ccf8",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-smtp",
      "version": "4.1.58.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:04491fea-ef5f-5ea8-850a-84162efd143c",
      "id": "CVE-2021-21290",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21290 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8cf02a03-bf40-58e9-9928-1a743d27178e",
      "id": "CVE-2021-21295",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21295 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db2a50cb-3f21-544c-942d-4854bce2557d",
      "id": "CVE-2021-21409",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-21409 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:419e6f03-4715-5f4f-a6cb-967b94ad813c",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65a0bfc4-096a-5943-be63-d7382bd1f130",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:906be82b-ea8d-5003-af87-68aedb0b82b4",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-43797 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52275e49-1a62-5063-94e5-d8feb8020bc2",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:917b1c13-4bef-5c78-ba75-3e0b65297514",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53204ed8-f0aa-5c47-a578-fc894532b3b0",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e3a88be-c7fc-5997-a3b9-2faac403520f",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3b38870-c307-5190-bb39-a29b215bf3a7",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-smtp 4.1.58.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3136fe8-b363-5930-9d1f-abebc63fd5c5",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b80f9285-d3c3-5b75-a2d6-2f06ada815c9",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-47535 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ce5a65b-85dd-5f89-aa27-95c8a370660c",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85abdf43-0b4e-5f77-9fcf-c5bf1c41ae83",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f289d24-2255-5731-b8ad-e4292e558327",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9350eaa-1e9d-5976-9155-2bd96ffd7d75",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91c1a4e7-7177-5fd8-98b7-c4a07ace3122",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68f6b08f-16f5-5208-8088-4c40ea3435f3",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:764f7760-f594-5474-8e67-d7c4b63b5767",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9b469f8-1af7-5b2c-8ea1-cfc117d24013",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd881da6-1d30-534d-b27a-b8551ef8b0e2",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae027cb0-5269-5646-a820-27ec9beb5c23",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.58.Final-tuxcare.1"
    }
  ]
}