{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4a909da0-54a5-559e-a1ae-980601a69727",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@angular/compiler-cli",
      "purl": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5",
      "type": "library",
      "bom-ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5",
      "version": "18.2.14-tuxcare.5",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66035",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:165b7f8f-4983-5199-9f36-3a90252f0048",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66035 is fixed in version 18.2.14-tuxcare.5 of @angular/compiler-cli."
      }
    },
    {
      "id": "CVE-2025-66412",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:9491efcf-7bfa-57d7-a445-3844ff64549d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66412 is fixed in version 18.2.14-tuxcare.5 of @angular/compiler-cli."
      }
    },
    {
      "id": "CVE-2026-22610",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0d5fc993-93ca-50d3-a628-13266d61bb9c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22610 is fixed in version 18.2.14-tuxcare.5 of @angular/compiler-cli."
      }
    },
    {
      "id": "CVE-2026-27970",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:54d6accc-41d3-5211-b2ee-e1e621a03f98",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27970 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.7."
      }
    },
    {
      "id": "CVE-2026-32635",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f55368fb-27a9-5381-8bb3-4ff6870152d2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-32635 is fixed in version 18.2.14-tuxcare.5 of @angular/compiler-cli."
      }
    },
    {
      "id": "CVE-2026-46417",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:5b1bab51-00d2-5c3e-823f-bc16650eb706",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46417 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.10."
      }
    },
    {
      "id": "CVE-2026-50168",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:7782a8b2-5cf6-5a63-b4e4-314029bed985",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50168 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50169",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:a2696f83-2dea-5586-8ac9-b4e11d56b645",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50169 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50170",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:48107d7f-5084-54a5-9121-a7c4a6b06d49",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50170 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50171",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:6f757a8e-0ced-520c-98d5-14f7d887e27c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50171 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50184",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:aca28343-6f9a-5139-9cc0-e741001b03c7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50184 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50555",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:8ec23c08-b843-51c2-8386-53501f3f56f2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50555 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50556",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:b78c8f23-deae-5dac-afd0-1aac879093ac",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50556 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50557",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:428c4890-4fb9-5380-99a1-3c9750333fbb",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50557 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-52725",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:125d3ff0-f473-511b-9635-86f19d8a11ed",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52725 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-54264",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:e6acfb62-b19f-56ca-b54e-d477f00b3b72",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54264 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54265",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:7719cacb-3098-5448-a3e3-1b02d80eff2c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54265 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54266",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:28564ecb-9b8e-594b-a114-b4c4cb620b37",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54266 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54267",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:efbecc30-943f-551c-8a87-b90994105067",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54267 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54268",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:88dd910d-ae30-5b67-96d0-4eea65701b32",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54268 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-68945",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:e9cefb04-9bb9-56e5-a883-44917bd8f7b4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-68945 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-69149",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:f76a9fea-ee64-5b92-b23a-35114b625df1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69149 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-69151",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:b1edf179-587c-50c1-9ef4-5b99a6af0a44",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69151 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-88056",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:51d65c0c-8851-576e-a30c-b3ba8e49372f",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88056 does not affect version 18.2.14-tuxcare.5 of @angular/compiler-cli. not_affected \u2014 The target version 18.2.14-tuxcare.13 is NOT affected by CVE-2026-88056. The vulnerable code pattern (calling String.prototype.trim() on URL strings before resolution) was never present in this version. The target uses a refactored parseUrl() implementation introduced via commit 49a60f6045 (May 2026) that correctly handles Unicode whitespace by percent-encoding it rather than stripping it, main...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-88057",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:b5868574-b30e-5433-a031-3c73e1e68143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88057 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli."
      }
    },
    {
      "id": "CVE-2026-88059",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:0c8fc602-3a12-5775-b8bc-f9bedcc78c4d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88059 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli."
      }
    },
    {
      "id": "CVE-2026-88060",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
        }
      ],
      "bom-ref": "urn:uuid:4f15e773-e611-5f3d-b95a-199a54949b2e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88060 affects version 18.2.14-tuxcare.5 of @angular/compiler-cli."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/compiler-cli@18.2.14-tuxcare.5"
    }
  ]
}