{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0aeec5d4-7d36-5528-a29b-6a0d48b54694",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@angular/platform-browser",
      "purl": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8",
      "type": "library",
      "bom-ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8",
      "version": "18.2.14-tuxcare.8",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66035",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:744c0fda-6707-533b-ab46-22864680f828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66035 is fixed in version 18.2.14-tuxcare.8 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2025-66412",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:08b66779-e13d-5ab6-95f2-aba8d4d0d68d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66412 is fixed in version 18.2.14-tuxcare.8 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-22610",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:cbf98373-2321-5e8e-a3c1-c7e67a8d3d3c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22610 is fixed in version 18.2.14-tuxcare.8 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-27970",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:fd1ac1a6-9414-520b-a263-62b51445d5d0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27970 is fixed in version 18.2.14-tuxcare.8 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-32635",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:c2af1551-1240-5df5-b636-cd1d2b1dd1da",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-32635 is fixed in version 18.2.14-tuxcare.8 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-46417",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:32ff355c-9f84-52d1-a852-3bee7679aa9f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46417 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.10."
      }
    },
    {
      "id": "CVE-2026-50168",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:d17e22b4-ad01-5279-9960-199c3a32b517",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50168 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50169",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:65bdd85e-43ca-584c-b5c7-515c3e74fa1a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50169 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50170",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:c01bc7f1-fdcc-5641-bbfe-1921a08b0a77",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50170 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50171",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:f20b6b65-65d7-5466-b4dc-2c5f069b0157",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50171 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50184",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:16cd7add-b59b-533f-8af2-49a6addb9e94",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50184 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50555",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:01c5c727-fac1-5b3b-8e6f-4bac96cbec1a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50555 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50556",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:041bdb5b-2abb-5081-8abb-3a5861cb84d9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50556 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-50557",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:99c36441-b39e-55f7-b0d6-7b4b4f539847",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50557 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-52725",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:f13650d1-0b30-57cc-b3bf-408b377dd45a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52725 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.11."
      }
    },
    {
      "id": "CVE-2026-54264",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:ede9ac11-7378-5363-a09c-5493780a90e6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54264 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54265",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:d1c27595-c363-529f-9ccb-8c9127313ccd",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54265 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54266",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:e1f631ac-064e-50f8-8b5b-cf0c0916a90e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54266 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54267",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:f559791a-f8a8-518b-8781-e6a04de6b03e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54267 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-54268",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:fbf88017-982d-5613-a86a-9ee0165373c7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54268 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.12."
      }
    },
    {
      "id": "CVE-2026-68945",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:02a874d4-5c5c-5ae3-9426-2a52d057aca4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-68945 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-69149",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:b245f1b0-7ce6-5276-a5e4-c0dbd14e7531",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69149 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-69151",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:0014ab36-fb9f-543d-9083-0b1540843488",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69151 affects version 18.2.14-tuxcare.8 of @angular/platform-browser, and is fixed in 18.2.14-tuxcare.13."
      }
    },
    {
      "id": "CVE-2026-88056",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:2279695c-163e-54f3-a0e9-4fb53c101685",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88056 does not affect version 18.2.14-tuxcare.8 of @angular/platform-browser. not_affected \u2014 The target version 18.2.14-tuxcare.13 is NOT affected by CVE-2026-88056. The vulnerable code pattern (calling String.prototype.trim() on URL strings before resolution) was never present in this version. The target uses a refactored parseUrl() implementation introduced via commit 49a60f6045 (May 2026) that correctly handles Unicode whitespace by percent-encoding it rather than stripping it, main...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-88057",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:7563c176-e896-5b34-9d89-6b646b84d247",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88057 affects version 18.2.14-tuxcare.8 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-88059",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:c04dd828-c770-5d6b-b291-48ee91cc4d18",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88059 affects version 18.2.14-tuxcare.8 of @angular/platform-browser."
      }
    },
    {
      "id": "CVE-2026-88060",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
        }
      ],
      "bom-ref": "urn:uuid:74f1b918-a625-5b0d-bd2d-43a3e202c85e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88060 affects version 18.2.14-tuxcare.8 of @angular/platform-browser."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/platform-browser@18.2.14-tuxcare.8"
    }
  ]
}