{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c5e25c69-f9af-5b02-a9dc-609582e023af",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-stomp",
      "version": "4.1.58.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:1ed6da6c-2a3d-5c81-8159-7f33603e1945",
      "id": "CVE-2021-21290",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21290 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:376093b4-7203-596b-8fca-3bf82a4d666f",
      "id": "CVE-2021-21295",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21295 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89d609b9-ffc6-557f-b086-da68e5a82558",
      "id": "CVE-2021-21409",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-21409 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8e5d614-3ff4-5487-b238-2decb144e09f",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e77ece4-b158-5890-b5d4-1f03764c6528",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce1febee-bb26-57d2-93fe-3bf3d424b655",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-43797 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1346fe36-966e-5200-a4d0-19109ced161d",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95e65b52-e37c-574a-88c3-d4107571bdb6",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c657b75-f82d-5692-ab56-00ca1d633d04",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:651486c4-9cd9-52d1-bd20-1a07c1da0f1f",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec5cf6e2-9487-5b76-b633-d33cad9f5de1",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-stomp 4.1.58.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f48ce1f2-962c-5d02-8497-3dd5aaf53842",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3517a49-16d2-5471-bdad-d3039fbf5161",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-47535 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80978ffa-9774-5979-9c9f-e38213987b4c",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8f1d8a2-7a97-5033-8275-a5743619544b",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:868b3b88-ed61-5926-a0cb-488d662bc9a5",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15db7f48-005c-5d2c-bf10-a2917bc80866",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52a3ef52-a035-5fc9-940c-94cf3dbdfdfe",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e433541c-6b3a-5458-999c-d3c924976066",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1da96ea-8235-5206-96e0-fd3012a3e23f",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a7849c4-8d82-589c-a2ed-9c0e7b04f539",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:daa7069e-02c4-5ecc-a6b4-7362fd8f2022",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38907f3d-73a5-53af-b174-1996f660c323",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.58.Final-tuxcare.1 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.58.Final-tuxcare.1"
    }
  ]
}