{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f2e0f233-82c7-5c6e-b3ec-f71a7f9a08cc",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@angular/bazel",
      "purl": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17",
      "type": "library",
      "bom-ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17",
      "version": "18.2.14-tuxcare.17",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66035",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:f07969c9-3966-5520-9408-4466df6077c5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66035 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2025-66412",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:72db94ef-e03d-5657-8957-9b62fc2027a0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66412 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-101895",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:f1faa7d0-9e57-5832-a39b-f0d6c49e6179",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-101895 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-101896",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:aac4e124-b275-5dd8-ae19-4bee4d754523",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-101896 affects version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-22610",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:894be551-51a6-5205-9a46-ec718f0ccd4b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22610 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-27970",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:b9470062-d807-55ec-85b0-349a4a51d4eb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27970 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-32635",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:323cf0dd-7ca6-5629-b70a-fdb381a6c514",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-32635 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-46417",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:9c977cd3-9833-5111-bd0f-8045397e86f1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46417 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50168",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:6a4fe276-1e3a-5bb2-b34e-60d9da3f0638",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50168 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50169",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:743e810e-ff37-597b-a4d5-4e898a472b4d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50169 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50170",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:35b5a137-cf5a-5fc4-96f1-faa75328052d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50170 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50171",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:ed493350-cfd7-58c9-9c0d-499c1d2520db",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50171 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50184",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:feb4b49d-d572-53c6-94fb-89b58e10bef6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50184 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50555",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:1cec0282-a756-5ad1-8b07-de3378ceadb6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50555 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50556",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:60465abd-a40f-5eb1-98ad-19bdc69edce6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50556 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50557",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:48724115-c665-51fa-ba91-239294b4210f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50557 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-52725",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:97a543ab-41e7-59a1-b138-f0cee6b24c8b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-52725 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54264",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:a0db0316-7fb0-5c1e-b1b8-0fdd7ef54fd3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54264 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54265",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:49aae41f-c68a-5857-a56f-8abf057f3cef",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54265 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54266",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:e262d33e-6cc0-54c6-a172-87b96b1676f1",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54266 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54267",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:66c16eee-cb83-585e-96e1-2b5b5f34dc09",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54267 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54268",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:b5f44856-0cfe-5352-ad98-818c09ce8df8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54268 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-68945",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:cf62f120-a961-5b40-8759-c32adda36204",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-68945 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-69149",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:2a6a248d-b2af-5630-b9f3-fa86f8364bdc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-69149 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-69151",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:0dc38f25-8469-52d4-8612-23b0c1bf9ba5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-69151 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88056",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:50395d6c-1eaf-54fd-bd1c-26ff04e3baf4",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88056 does not affect version 18.2.14-tuxcare.17 of @angular/bazel. not_affected \u2014 The target version 18.2.14-tuxcare.13 is NOT affected by CVE-2026-88056. The vulnerable code pattern (calling String.prototype.trim() on URL strings before resolution) was never present in this version. The target uses a refactored parseUrl() implementation introduced via commit 49a60f6045 (May 2026) that correctly handles Unicode whitespace by percent-encoding it rather than stripping it, main...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-88057",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:80b38bf3-931f-582e-846c-7e7091a4262a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-88057 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88058",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:590e4bf5-8dd6-5878-bd64-1485981ea08a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-88058 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88059",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:b7209b46-547b-5c61-b9ca-38e8999030be",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-88059 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88060",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:84ac40ca-bf54-59af-9320-9ed0a744de45",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-88060 is fixed in version 18.2.14-tuxcare.17 of @angular/bazel."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/bazel@18.2.14-tuxcare.17"
    }
  ]
}