{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1a40cb4e-f327-51e5-bf66-e3ac69d4cda8",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2",
      "type": "library",
      "group": "io.netty",
      "name": "netty-codec-smtp",
      "version": "4.1.60.Final-tuxcare.2",
      "purl": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:79dee1c0-58f5-50f6-bee8-8b5b7e267081",
      "id": "CVE-2021-21409",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-21409 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:148250bd-dd69-54ac-ad2b-5917655f2cbc",
      "id": "CVE-2021-37136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37136 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d493ecdc-bcec-5376-8dcd-29581abf0d59",
      "id": "CVE-2021-37137",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-37137 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55bd3969-e58b-576e-98dc-e304cce0d43b",
      "id": "CVE-2021-43797",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43797 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58d4c0dc-7c75-5789-a559-766588e26ca7",
      "id": "CVE-2022-24823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-24823 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:272abe5d-8334-58b1-85d9-20ba6265b1ea",
      "id": "CVE-2022-41881",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41881 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b658e6c-de9b-558a-b9eb-08c557b6f1fa",
      "id": "CVE-2023-34462",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34462 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a63d1e5-8540-5edc-b12c-3113d2a259ec",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a07c4ca-a4d9-50ea-9295-6f4dbdcc40cf",
      "id": "CVE-2023-4586",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2023-4586 is a false positive for io.netty:netty-codec-smtp 4.1.60.Final-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6cccda2-d025-51fd-aea7-05a85d5b6ea6",
      "id": "CVE-2024-29025",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-29025 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42a5df4d-17b7-5ce7-9da6-73b28cc2ac9c",
      "id": "CVE-2024-47535",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47535 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa4e4fa1-9f14-505d-b605-6cc0251e212f",
      "id": "CVE-2025-24970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24970 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8e4c579-80b7-5e17-a0b4-5d82afa03e09",
      "id": "CVE-2025-25193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-25193 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:741ac555-c5ad-59df-aa83-cc37a62b78d3",
      "id": "CVE-2025-55163",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55163 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec2bf985-907c-598a-a766-e2fe121cc5b1",
      "id": "CVE-2025-58056",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-58056 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e465a6a2-d924-5a8c-babf-7ef34298a3e3",
      "id": "CVE-2025-58057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58057 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b523ae9-b16e-5997-8220-559735bbe747",
      "id": "CVE-2025-59419",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59419 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a05c7a89-b830-5433-8d58-197f9489ed7c",
      "id": "CVE-2025-67735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67735 is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b40bfe58-50bd-587b-a958-d77364994c06",
      "id": "CVE-2026-33870",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33870 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2961356f-ea7e-544e-8a33-6fb77236598a",
      "id": "CVE-2026-33871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33871 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfd4c247-0730-5ad7-9c27-d585fe51b4e2",
      "id": "CVE-2026-41417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41417 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc239628-c16e-5beb-b669-30918dd31847",
      "id": "CVE-2026-42577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42577 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91e36577-019f-5a83-8afd-c52cdc6a4cb8",
      "id": "CVE-2026-42578",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42578 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b1691ec-165b-5af6-8052-6dce5254bccb",
      "id": "CVE-2026-42579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42579 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:829bce38-b23f-58bd-b928-9a911823fd50",
      "id": "CVE-2026-42580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42580 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0399856-19e3-529e-8bb3-a7cb71f98900",
      "id": "CVE-2026-42581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42581 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f349b0e-dbb1-5cc9-8ef7-b3d96e5b6a27",
      "id": "CVE-2026-42584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42584 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bbf13e2d-054e-5766-bccc-2d80d18923d2",
      "id": "CVE-2026-42585",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42585 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f21d903a-33e8-51b5-93bd-e632e7db510e",
      "id": "CVE-2026-42586",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42586 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc8ad9c2-4944-56fd-9cd4-f6a6f0f53e91",
      "id": "CVE-2026-42587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42587 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:812f3ad6-65d5-5cd1-8677-ac86552caa0e",
      "id": "CVE-2026-44248",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44248 affects version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58027c27-d4f4-5d58-9c3a-6845bb6646a5",
      "id": "GHSA-xpw8-rcwv-8f8p",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-xpw8-rcwv-8f8p is fixed in version 4.1.60.Final-tuxcare.2 of io.netty:netty-codec-smtp."
      },
      "affects": [
        {
          "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/io.netty/netty-codec-smtp@4.1.60.Final-tuxcare.2"
    }
  ]
}