{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:71283c86-985f-57a3-9bce-16b4bdb5e85b",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-stomp",
      "version": "4.1.112.Final-tuxcare.2",
      "purl": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:796d27f3-8992-5624-9bd7-28a292a80593",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-47535 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:951446c7-6a86-5fbc-9a9a-7a124a7869b8",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a59513f-55cd-5102-b6aa-aceb2d38afda",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d58e296d-b348-50ea-8d2a-fc35dacbfc83",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa572cae-d1a1-51ab-8f39-62784bb517fb",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61516c6d-892d-5823-a1d0-3ca95142428a",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b66508e-458b-57f4-8858-ca51be4bab5d",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:477efc52-3735-5a8a-bfc6-e32435ed40aa",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67735 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36fc17c7-310d-50a2-8eab-0934aa52e9ae",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66e843f5-a751-58eb-bc0c-21af7cded227",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-33871 is fixed in version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a6b69e3-b80d-5e6c-961e-b37ec084c5e8",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25a98884-900c-5315-9250-f41328007fe4",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e6c6626-94ae-51a6-949d-9ba9f280ec3a",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:565a2347-c882-5601-85d3-7447367791a7",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1292adf-8401-52ba-a23b-c01e10fc06d4",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27c4b473-a700-5013-8009-810016c0cedd",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:401fc4a3-f355-5682-b040-9debbc4f1cd3",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03da8bbc-de3c-57d2-b2cb-a078edbd8ba5",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc0c01c4-541b-5e25-98b7-0f9a72574bfe",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9450dbec-ad15-5e7d-8535-e8fb423749aa",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6bf5e9d-0c86-5d14-aa17-c17694caf7a6",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.112.Final-tuxcare.2 of io.netty:netty-codec-stomp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-stomp@4.1.112.Final-tuxcare.2"
    }
  ]
}