{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:967ac1a5-36e1-5b17-b2f3-f02bff6ba255",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@angular/platform-browser",
      "purl": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4",
      "type": "library",
      "bom-ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4",
      "version": "18.2.14-tuxcare.4",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66035",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:e84a05e6-ff18-5837-b0d0-cf9ab9e20c59",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66035 is fixed in version 18.2.14-tuxcare.4 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2025-66412",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:5bd327ce-b249-51b3-9015-620c3bade60b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66412 is fixed in version 18.2.14-tuxcare.4 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-22610",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:85fea749-01cd-5e13-8c0b-111d1c8bfe2a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22610 is fixed in version 18.2.14-tuxcare.4 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-27970",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:e2c2e59f-cd9b-597b-b4c9-5f43614d4260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27970 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.7."
      }
    },
    {
      "id": "CVE-2026-32635",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:711f6843-f9a8-500f-b1df-7c0e126a7ef4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32635 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.5."
      }
    },
    {
      "id": "CVE-2026-46417",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:a0c9363f-4647-5850-8a3e-cf6d39f6c891",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46417 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.10."
      }
    },
    {
      "id": "CVE-2026-50168",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:a2120b78-c786-585e-9207-013b0e1f4493",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50168 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50169",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:07478843-9c61-5661-8c23-e1df1d824151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50169 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50170",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:3f77c3bf-239c-5aba-81ee-f637b4dee2d8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50170 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50171",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:c9f7130d-2865-5171-b3bd-1cf0e45beffc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50171 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50184",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:facf543c-704b-580d-b102-5ec71d971dc3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50184 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50555",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:19917cc6-23fd-584a-b9c8-270cfd2933c1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50555 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50556",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:9b130879-4f98-55d7-b300-316c61b152d7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50556 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50557",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:138056c0-405b-5e9b-8bb6-7a24b73d8e69",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50557 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-52725",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:6fd790fd-1be4-5262-ac16-ccb5ae33fadf",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52725 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-54264",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:248c12ac-7740-5313-80a6-63330d21396f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54264 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54265",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:6e86b44d-f2ae-5fe3-9fd9-3813d30e6eaf",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54265 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54266",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:1cab544a-f2e4-531d-97a7-76b01a0994ab",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54266 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54267",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:bb9887ab-7f6e-569b-94cc-700749876584",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54267 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54268",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:54130fd4-d52d-5cba-a326-72fd1e30190b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54268 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-68945",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:8a09ff32-8d1c-5235-adcf-18946341bff9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-68945 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-69149",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:9ed480ea-df7d-5a87-8f80-c0caf80de447",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69149 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-69151",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:97ed3b21-6065-581f-9b38-31aa46c25de6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69151 affects version 18.2.14-tuxcare.4 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-88056",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:1b7ea225-c009-5380-ba92-328b913eddff",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88056 does not affect version 18.2.14-tuxcare.4 of @angular/platform-browser. not_affected \u2014 The target version 18.2.14-tuxcare.13 is NOT affected by CVE-2026-88056. The vulnerable code pattern (calling String.prototype.trim() on URL strings before resolution) was never present in this version. The target uses a refactored parseUrl() implementation introduced via commit 49a60f6045 (May 2026) that correctly handles Unicode whitespace by percent-encoding it rather than stripping it, main...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-88057",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:a8f0f2fb-3329-52a2-882c-2b02aeea52c8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88057 affects version 18.2.14-tuxcare.4 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-88059",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:889a054a-2310-53a9-80c6-b83c6e3e9edc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88059 affects version 18.2.14-tuxcare.4 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-88060",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:2d32d517-a990-5e1c-801f-678f75ef3e35",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88060 affects version 18.2.14-tuxcare.4 of @angular/platform-browser."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.4"
    }
  ]
}