{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:b136db5a-79ea-55dd-a427-562b116bc359",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2",
      "type": "library",
      "group": "io.netty",
      "name": "netty-transport-rxtx",
      "version": "4.1.58.Final-tuxcare.2",
      "purl": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:bddfcd11-5129-5fbe-9761-a5b527fea4fc",
      "id": "CVE-2021-21290",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21290 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdebe58c-8a9d-59dc-abe4-9dd9aec090f2",
      "id": "CVE-2021-21295",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21295 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca9c2c93-8724-505c-af0f-41c152a7ad0c",
      "id": "CVE-2021-21409",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-21409 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c0c2c40-7a08-595e-ab2b-a199a0e60a61",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6168b261-8d3d-55a7-8f6f-3811ad3b77c0",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bb7402f-2238-5f91-a1a0-4da49f28352d",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-43797 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a71a54b-43ca-5876-8304-12045a725e6b",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:076d5313-ce30-530e-8997-431b30808727",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c951b843-b00b-58fe-8ff0-b93b5974a068",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65c2af92-5a5d-5e0d-a817-8ed213a88049",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4b98fb0-e133-5d1a-acf9-ccf4a424535f",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-transport-rxtx 4.1.58.Final-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10f164e2-1fce-5350-90fd-b29acba88e50",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-29025 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8aa9be49-f358-5a66-89d7-818ee7286f00",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84fbd5e5-cc2e-5e88-ace0-618feedff992",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac52002d-d79b-5ba7-a8d7-6004982e42a8",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:309fc734-2478-50ea-a32a-e68d241733a6",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9900bf0-c92e-596d-96dd-3fdb22fe14a0",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e09e13e-308c-5798-af85-ff8457c583b9",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58057 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:026d1a57-3cb9-5e4e-a1eb-2a6b798f2b3b",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ef3e1b6-f95c-5a55-b81f-c2fc97e13c83",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9095227-0c02-531e-9207-7f7c670bfc26",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:958dbd7b-1421-5381-b6d7-a9585b8de9aa",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f12d9de-467a-526f-aa62-07e160a7095a",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a24c1a4-bed5-59ee-923b-d7c437288ccc",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5200249-fe40-5831-85d8-d5414ad44916",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:449c766b-48ab-51ae-8525-55ca653c820d",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4bf78465-2161-5767-9fa2-31d009750c08",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e170331-52ea-5031-8bd7-63226022d870",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:368563fd-cdc7-50b2-abdb-37cb0c43e447",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c126041-f808-5b21-9b15-ad41f072681f",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a02fc4f-7a08-5fe8-ae0f-c7d01f29a189",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1a97cff-c771-5e32-8609-80bde31715fd",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fcd18e17-0f09-5af9-8254-1a62891b6a13",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5910a705-87f2-5797-8a1b-b7281f57eef6",
      "id": "CVE-2026-44249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44249 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae6aa949-0b79-593c-89d1-43676dc8adbf",
      "id": "CVE-2026-44250",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44250 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9358ede1-e2a5-51b0-8c00-23f55f517efe",
      "id": "CVE-2026-44890",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44890 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef68da2a-82d2-5d0d-bcca-93d58fc46de2",
      "id": "CVE-2026-44893",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44893 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3943d3fd-405d-5cd2-bdff-0b0441a3db1d",
      "id": "CVE-2026-45416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45416 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c8e8cb6-e3a6-5235-bbe7-711bfee58982",
      "id": "CVE-2026-45536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45536 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0141401f-010c-57d3-ac88-7df826c69664",
      "id": "CVE-2026-45673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45673 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62909fa7-083c-5d2d-bb0e-da1e0180b71f",
      "id": "CVE-2026-45674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45674 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56039552-7598-5937-aa08-91f5fc1a9d1a",
      "id": "CVE-2026-46340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46340 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e982b72-83d9-5e26-b222-d31a67ad215d",
      "id": "CVE-2026-47244",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47244 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0817be85-b789-5c88-8841-a3b03525c0c9",
      "id": "CVE-2026-47691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-47691 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b7bf846-3c72-5db7-82ca-f36e2f4d3d51",
      "id": "CVE-2026-48006",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48006 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fd7dc62-c762-584a-b921-74b9ef5c3f3e",
      "id": "CVE-2026-48043",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-48043 does not affect version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx. already_fixed \u2014 Target version 4.1.58.Final already contains exception-safe buffer cleanup via finally block (lines 132-134), providing the same protection that the upstream patch adds to newer versions. The vulnerability was introduced in versions AFTER 4.1.58 through architectural refactoring that removed this protection. Version 4.1.58 never had this vulnerability."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6089f721-9734-51b3-b0b9-a8dca2441503",
      "id": "CVE-2026-48059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48059 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16786504-eb78-5d55-b2b3-e092e3c4e881",
      "id": "CVE-2026-50010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50010 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:190c0aa0-59bb-5ebe-8f01-34b7a2b7d52a",
      "id": "CVE-2026-50011",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50011 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0066fe98-9bdb-5344-9ae1-c294051b7b14",
      "id": "CVE-2026-50020",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50020 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c30cd335-5e7d-575e-8e0c-a1ba784de141",
      "id": "CVE-2026-50560",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50560 affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c940571-8c08-57e0-9e83-0934b2b79ee0",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p affects version 4.1.58.Final-tuxcare.2 of io.netty:netty-transport-rxtx."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-transport-rxtx@4.1.58.Final-tuxcare.2"
    }
  ]
}