{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7bd2070d-8ce9-5bce-9c73-416b13b469b0",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-smtp",
      "version": "4.1.52.Final-tuxcare.1",
      "purl": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8614ad3b-e9b8-5fd8-9a64-1ef9bd3ca029",
      "id": "CVE-2021-21290",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21290 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3badeefd-ec5c-5f75-88d5-8a86dafb1ea0",
      "id": "CVE-2021-21295",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21295 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d860e669-b12d-5104-a292-75ecd0958c73",
      "id": "CVE-2021-21409",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21409 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7381c6a-9be0-5478-94a7-3dc59b8a7117",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b35a9699-28fb-5c55-a710-6ea39c7a8548",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:907df45d-2700-5e71-8faf-f0808b71eb17",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5fa1635-760c-5bbf-a60b-4d174333bf39",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da3961c2-097b-577c-a18d-4a92f486623e",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:972e4860-0ecd-50a5-9761-2873de65d75a",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-34462 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ec35ac7-3402-5e91-a5cf-d86eab7f4ad4",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d39dfd17-dcaa-52b4-9c6a-74b40f1c525f",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-smtp 4.1.52.Final-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aa336ce-92c5-5c01-a82d-4985b16ad734",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc9e34fc-7e39-530f-b7c3-9363ac4bbf49",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2812a8b6-12da-5ed6-ba9b-8a83f85861d1",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24970 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c4dc284-de7f-57fd-9651-6e96b0ec2c5d",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a544f20a-9591-586f-bf43-269a31283689",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55163 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01171bda-41ea-5e05-802c-058954febcde",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58056 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cad3b187-6dc2-58f4-bbfc-682b7f2d257d",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:975190d9-6258-5777-8aa8-2503307be829",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36b72b09-3ca1-5645-9ec0-1e62f48b7253",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67735 is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1cdcee04-5275-5a37-beec-9c85e3cd2fe9",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd555c5e-da73-5e57-aa8b-64203f054a55",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:252d670c-7709-5ae5-a1a7-74a3ccb39945",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d6ed5a5-894c-5b7a-888f-cd8fc0aa6d31",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:269c7476-0457-5228-be1e-1bab9c386634",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6696f6f-9601-517b-9c25-7437222e58de",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7341c05-5b69-5ff4-b6a9-e63f1b6d87d1",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:918cc94b-dcd4-5eec-81ff-254c9c15e097",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d26670b-79d4-58ae-bdc4-15214351b355",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ba65d69-178f-53c4-acc7-7142feadd6ff",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4c642f1-7406-5cfa-bf78-a3b1e31a9e9c",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d1f1962-11c2-510b-af48-7c8f56fb2202",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b4fc730-d89a-5857-b2dd-d8e96222831a",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32a8ab99-d53b-5c70-ac10-4d1ed19bfcd7",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.52.Final-tuxcare.1 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.52.Final-tuxcare.1"
    }
  ]
}