{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:8b2bb331-00bb-5695-adff-3aecbf0388b1",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@angular/bazel",
      "purl": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16",
      "type": "library",
      "bom-ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16",
      "version": "17.3.12-tuxcare.16",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-59052",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:42fbde1e-cfd6-568b-a37e-aa744b354d83",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59052 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2025-66035",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:a1310ad0-e2f4-567d-86a4-fe56f32c1a84",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66035 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2025-66412",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:6fac26c8-af57-57e5-8d06-82093013b1a0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66412 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-22610",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:92658f27-9f02-5523-8072-f6f9d57b9a3f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22610 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-27970",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:2c1e27d1-5ee5-5ace-bd7c-d9274ad56495",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27970 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-32635",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:642e43d2-11e9-570e-b121-b467066c0dde",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-32635 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-46417",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:4384876e-7901-5105-8fac-9fbb8a9233a6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46417 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50168",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:8dff0b65-8226-5449-be28-a20f4c2a49bf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50168 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50169",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:b08e6062-766f-574f-bf47-f767f37b6951",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50169 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50170",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:44070d3b-d957-5822-b414-864a92197a12",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50170 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50171",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:36ee5f57-46f7-5d8f-99e0-b66a8105cfb8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50171 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50184",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:49c3c442-f930-5268-9a1d-01a3c1057be6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50184 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50555",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:983f2e3e-bd3f-590f-bf81-72104d03912e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50555 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50556",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:d35304cf-587b-5d0c-86cb-82b63d07df05",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50556 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-50557",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:8ea1aaec-9dfa-5356-b57b-6cd874b31474",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50557 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-52725",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:a1732874-d49f-5ac5-b756-95ae736ac45e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-52725 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54264",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:c01b7ca2-b8d4-5b38-bc0a-4581d857e85d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54264 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54265",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:8e7fdd6b-87de-5778-91c8-d85d9385403f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54265 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54266",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:d8da0e31-ed02-5587-8286-73663cf5e39d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54266 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54267",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:c857b61d-dda0-5b3e-b3d8-c513de350989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54267 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-54268",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:35498b06-3de8-5ede-a4fb-68a2f25b2420",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54268 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-68945",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:0d181c47-7eef-5cff-903a-c2b7482a4a70",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-68945 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-69149",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:1c2e997d-6413-58ca-8653-f7e7517c1a03",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-69149 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-69151",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:9a33014a-3a3d-5cbd-8a3e-c0525d3137c5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-69151 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88056",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:6fa324f9-f233-576f-a45c-d815f5df482f",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88056 does not affect version 17.3.12-tuxcare.16 of @angular/bazel. not_affected \u2014 Version 17.3.12 is not affected by CVE-2026-88056. The vulnerability involves String.prototype.trim() being applied during URL resolution in Angular's platform-server, converting validated same-origin URLs with Unicode whitespace into cross-origin protocol-relative URLs, leading to SSRF. This vulnerable code pattern was introduced in newer Angular versions (v20+) and does not exist in version 1...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-88057",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:e1ae6500-5037-5a40-8d3f-661e9112a00d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-88057 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88058",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:b7b33aa4-307b-5e07-b155-60b4b30cc08d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-88058 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88059",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:9860755b-1ea9-5ae6-a1ae-0a111b91a5e6",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-88059 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    },
    {
      "id": "CVE-2026-88060",
      "affects": [
        {
          "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
        }
      ],
      "bom-ref": "urn:uuid:24d1eefb-c137-53d2-8bb0-4bc89e679d6c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-88060 is fixed in version 17.3.12-tuxcare.16 of @angular/bazel."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/bazel@17.3.12-tuxcare.16"
    }
  ]
}