{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3404152c-afd7-5025-b21f-b4fc33eae7b1",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-dev-tools",
      "version": "4.1.60.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:bdb19ac1-8f31-57f1-910f-243442a35ac9",
      "id": "CVE-2021-21409",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21409 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc38258e-f1cc-5a32-ba6c-f2ce8f5120c6",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf5be6b8-0dda-507c-8899-49a56ca05efb",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d927f504-be32-5fe8-84e4-8daace577c8b",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba75ba36-5da3-5ac7-9cc7-b76750a47aaf",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2dac085-1076-53f0-a1d5-8731cb5af6b9",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4526475d-3a15-5643-a416-2b62dbfd2be4",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff5d3de6-225a-51bb-8bfe-385d5607442a",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e336358-a48d-5c52-b12c-1d56d06fb033",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-dev-tools 4.1.60.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6914f8cd-9c0b-571b-8d23-0e00b3a46412",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:208f4ce9-16f9-5c41-a01b-7345e993f5df",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eee944ff-38b5-5f5a-af7e-d887f6ad76c0",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff818377-6412-5190-9013-f2e310a83055",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eadbe902-75fb-59ca-8d6c-880421e6e437",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:344b5d9a-b9c1-5ac2-aae9-a104869313c9",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1e7a2d7-aeff-5b50-b400-5a368251b51e",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17af2fc0-d184-5c2b-a89e-8091c862d628",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a428576-1c50-5a35-bae4-d8a1634932b1",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67735 is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:420409c9-5296-5e5a-b6f8-b4d529565751",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6737bfa4-acfd-54d7-8af2-1c1d07a0558f",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7568e2ca-f96e-5eac-8468-a306331fac07",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.60.Final-tuxcare.1 of io.netty:netty-dev-tools."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-dev-tools@4.1.60.Final-tuxcare.1"
    }
  ]
}