{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0684e1d0-3f67-5e41-83a2-a5a802b59bc7",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-xml",
      "version": "4.1.93.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:7b80721c-1aee-5b51-a01d-49aed6497297",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9a255fb-7e45-5072-927a-385995bd6b79",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e589ba9b-527f-5fe2-92c3-603701da385e",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-xml 4.1.93.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17442d0a-5de6-5b16-86b7-4dab0d192e19",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0a6e98d-1517-5c4f-a519-2cfc3ac18bb8",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee09ead2-6303-5f44-81b5-e192a8a5cd4d",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6181c941-54ff-563b-b874-4c962bd1d9b1",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-25193 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee3b12b4-e0e3-5d86-8025-42c01f278c45",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:308e23a7-83f5-56f3-9176-725c1ba40de6",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a2d1340-23ca-5b58-a4d8-429546aaf09f",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17092d46-78a5-5919-b4f3-1ec798b0e225",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e2c47ee-2925-52a4-b594-3899c463ceac",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67735 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec6fc52d-3d92-5d36-a6a1-8f9f929d22d9",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f1a1c34-f8d2-517a-a9f9-c4477183b6ba",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-33871 is fixed in version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3cd5124-736f-5d92-a933-6e689a0b5a6e",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.93.Final-tuxcare.1 of io.netty:netty-codec-xml."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-xml@4.1.93.Final-tuxcare.1"
    }
  ]
}