{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:8f722e87-3e53-51ba-a0da-c956ca22dacc",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-testsuite-http2",
      "version": "4.1.48.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:0192be58-a414-5e00-a727-12f306b70d07",
      "id": "CVE-2021-21290",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21290 is fixed in version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5646e3a6-c1b8-5909-8d3b-6fa93475016f",
      "id": "CVE-2021-21295",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-21295 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0370ea5-fc36-5b67-a440-161e477c1874",
      "id": "CVE-2021-21409",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-21409 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a9f233c-005b-5a48-8e65-1bb6c8d09094",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-37136 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5c03042-b50d-5934-bfa3-61e9973cfce4",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f717d4e-97d0-50a9-8f17-f45bea6e302e",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-43797 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e154ebb1-d513-5cf4-96b9-be0d03cf070f",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-24823 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:436516c7-7af2-5589-b743-f65fc1030dd3",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41881 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:024138ae-a49a-5261-baea-4e1a7bca4266",
      "id": "CVE-2022-41915",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-41915 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b8e5c1e-39c2-57d1-95fe-6689a2703639",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba53ee5e-58bf-5427-9af8-e3e01053a596",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9ced79c-354f-5c90-9eaf-0b4ac3f804e8",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-testsuite-http2 4.1.48.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7da9df81-58f7-5403-8482-7288643028d1",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:def211b4-a1e1-54b6-bcfa-443cc61312cd",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-47535 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a486253f-88d9-5d4e-88b5-251a256d5971",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96354c82-d6dc-5568-bb0c-a2f7262c07c5",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b88122c6-a8a6-5a8c-a9ff-2e5825d29053",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4abe5329-07d5-52f8-8358-114933737829",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b399ddd-b500-5d0f-954f-cc3baa92b282",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8235045-8715-58f3-847e-fb5546f3529e",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-59419 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3cab342e-d806-5c29-83a5-9bd8b32fd0ba",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67735 is fixed in version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a823b56-2971-59ef-bad1-415a12e3f660",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e989b6e9-cd0c-53eb-868a-6baf48967d47",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be9ab5d4-d372-55a2-8ab4-009e6efc5ad7",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.48.Final-tuxcare.1 of io.netty:netty-testsuite-http2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-testsuite-http2@4.1.48.Final-tuxcare.1"
    }
  ]
}