{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:cb0ce5e3-c29e-5e0a-b409-701683e74b44",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@angular/bazel",
      "purl": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11",
      "type": "library",
      "bom-ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11",
      "version": "18.2.14-tuxcare.11",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66035",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:462915bb-e2fd-509c-a28f-5d422216d0b3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66035 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2025-66412",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:7922e01c-4aa7-5fd8-be34-aa3e10876ae8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66412 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-22610",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:20bac95e-720f-5b89-8126-c8ddb8c21148",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22610 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-27970",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:866da58e-fedc-5b74-b7f7-6103b81eae20",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27970 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-32635",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:3af1dcc2-c99a-526c-b194-29b5e55f5b4a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-32635 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-46417",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:554a3bb3-edfe-5119-a03c-012dad85c816",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46417 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50168",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:0f4efba9-ff37-5152-b0f0-89144138470e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50168 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50169",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:a498c9da-a99a-556f-9641-4fc8ec899031",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50169 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50170",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d027c311-1270-5da1-b441-906a8376ff99",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50170 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50171",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:52f397da-af67-5fd5-ba79-384918cbe79f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50171 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50184",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:5a8f230f-e95d-55aa-a117-604ebdfca985",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50184 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50555",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:6e7a31fb-7859-50a6-8117-9b2f167b9a33",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50555 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50556",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:208a661c-a436-59ac-a4ee-180cb28757bc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50556 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50557",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:ea91c912-197b-5dad-9669-9b8d0bc72b54",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50557 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-52725",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:a5748dbf-0e80-5a58-874d-09eee72cadd8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-52725 is fixed in version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54264",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:cc8f89ae-c09a-575a-89e6-094250c034e3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54264 affects version 18.2.14-tuxcare.11 of @angular/bazel, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54265",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:e339a834-6374-5455-80d4-9e2720921271",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54265 affects version 18.2.14-tuxcare.11 of @angular/bazel, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54266",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:9e0da532-41ed-5ee3-8702-91e0ca34ff4b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54266 affects version 18.2.14-tuxcare.11 of @angular/bazel, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54267",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:171a8a73-5297-59c7-a481-800d901f5afa",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54267 affects version 18.2.14-tuxcare.11 of @angular/bazel, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54268",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:a6d4900b-d203-510f-97e5-25760e07a53d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54268 affects version 18.2.14-tuxcare.11 of @angular/bazel, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-68945",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:5eab91cb-ca4f-5767-8c5e-616d151acbba",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-68945 affects version 18.2.14-tuxcare.11 of @angular/bazel, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-69149",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:0e333657-8f18-5d63-bec3-1923bd8e20d7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69149 affects version 18.2.14-tuxcare.11 of @angular/bazel, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-69151",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d7b6f36c-3f79-5d8b-a3fa-112268cf96b3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69151 affects version 18.2.14-tuxcare.11 of @angular/bazel, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-88056",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:90951120-0db5-5de3-90fb-e1f122fbe0c1",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88056 does not affect version 18.2.14-tuxcare.11 of @angular/bazel. not_affected \u2014 The target version 18.2.14-tuxcare.13 is NOT affected by CVE-2026-88056. The vulnerable code pattern (calling String.prototype.trim() on URL strings before resolution) was never present in this version. The target uses a refactored parseUrl() implementation introduced via commit 49a60f6045 (May 2026) that correctly handles Unicode whitespace by percent-encoding it rather than stripping it, main...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-88057",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:d45df51f-3ed9-580a-bead-83c2552f6546",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88057 affects version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88059",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:254faf52-f508-5acc-9608-fdf92f9cdc91",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88059 affects version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88060",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
        }
      ],
      "bom-ref": "urn:uuid:3361857f-7d9c-52d8-ab8d-c130393c97c1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88060 affects version 18.2.14-tuxcare.11 of @angular/bazel."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.11"
    }
  ]
}