{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:40a1a8ad-d164-5612-8105-d82e4429aaef",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "adm-zip",
      "purl": "pkg:npm/adm-zip@0.5.18",
      "type": "library",
      "bom-ref": "pkg:npm/adm-zip@0.5.18",
      "version": "0.5.18",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2026-102282",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:e1421cc0-7c28-5117-842c-6f65836a6724",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-102282 affects version 0.5.18 of adm-zip, and is fixed in 0.5.18-tuxcare.5."
      }
    },
    {
      "id": "CVE-2026-39244",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:8be4872a-26e6-575d-88e4-87a62eca1d21",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-39244 affects version 0.5.18 of adm-zip, and is fixed in 0.5.18-tuxcare.1."
      }
    },
    {
      "id": "CVE-2026-76845",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:f4dd7d52-1046-59e4-a85c-fe237c3394e9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76845 affects version 0.5.18 of adm-zip, and is fixed in 0.5.18-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-77301",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:b452497e-2cc6-5e2c-8c3b-5016a76f38c1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-77301 affects version 0.5.18 of adm-zip, and is fixed in 0.5.18-tuxcare.2."
      }
    },
    {
      "id": "CVE-2026-92000",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:a41ca851-d45f-56fd-b2d6-6ffdf2d20398",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-92000 affects version 0.5.18 of adm-zip, and is fixed in 0.5.18-tuxcare.4."
      }
    },
    {
      "id": "GHSA-8238-w5pm-2374",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:153181c7-c8ba-5e2b-bff4-2b348c8de2fb",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-8238-w5pm-2374 affects version 0.5.18 of adm-zip."
      }
    },
    {
      "id": "GHSA-c6fg-446q-cg94",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:04a76c19-e859-5179-8d61-1e5e10e4dd57",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-c6fg-446q-cg94 affects version 0.5.18 of adm-zip."
      }
    },
    {
      "id": "GHSA-p634-w6r4-rjp2",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:489c9057-3efc-5922-b50b-2cc65122f321",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-p634-w6r4-rjp2 affects version 0.5.18 of adm-zip, and is fixed in 0.5.18-tuxcare.6."
      }
    },
    {
      "id": "GHSA-rcw4-f5rp-g42v",
      "affects": [
        {
          "ref": "pkg:npm/adm-zip@0.5.18"
        }
      ],
      "bom-ref": "urn:uuid:90b4af82-51c4-5a2f-9e17-6c93255fff18",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-rcw4-f5rp-g42v affects version 0.5.18 of adm-zip."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/adm-zip@0.5.18"
    }
  ]
}