{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:507f61fc-dfdd-5698-9183-6fb850457592",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1",
      "type": "library",
      "name": "@angular/http",
      "version": "5.2.11-tuxcare.1",
      "purl": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:a45adb92-1a89-51d2-8222-ff6ce78cd1bb",
      "id": "CVE-2021-4231",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-4231 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:834fa762-c2d3-56a2-b0a6-b694dc11f2fa",
      "id": "CVE-2025-66035",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66035 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eddb7b7d-da2c-56e4-8f21-14de4b331ce7",
      "id": "CVE-2025-66412",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66412 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0710c68d-ee59-5def-bb89-808a5d16f5ef",
      "id": "CVE-2026-22610",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22610 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed65cffd-0577-58cf-9f85-8c6807e2d4d0",
      "id": "CVE-2026-27970",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27970 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73732367-e57a-5479-a0ae-3f3af7a8187d",
      "id": "CVE-2026-41423",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41423 is fixed in version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13eaa483-3d49-509a-b5b0-1e1ba1f06064",
      "id": "CVE-2026-46417",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46417 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c9902e6-5bfe-5b63-ad95-a9461d55e61d",
      "id": "CVE-2026-50168",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50168 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b83b064-5f1a-543e-9f01-996114731457",
      "id": "CVE-2026-50169",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50169 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27562b93-94b6-580a-93d5-5ed77d9bd177",
      "id": "CVE-2026-50170",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50170 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d1ccb86-817f-57a6-ad4a-d27db0fd8697",
      "id": "CVE-2026-50171",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50171 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a93c839-76f6-5364-adc9-8ffe959a0402",
      "id": "CVE-2026-50184",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50184 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:828bf64d-783e-59e3-b5de-a65821ca9674",
      "id": "CVE-2026-50555",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50555 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1537b0f7-86be-53a3-874e-affd63f49cbd",
      "id": "CVE-2026-50556",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50556 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b397de65-cc5a-5afa-a921-8024f82e539a",
      "id": "CVE-2026-50557",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50557 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f884fb1-2875-58f6-86ba-850676ab2d24",
      "id": "CVE-2026-52725",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52725 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3c9d06e-20de-550c-8fe7-e9fb1743cc2d",
      "id": "CVE-2026-54264",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54264 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c05ddd45-28ca-53e9-b77e-b99ba4d839b5",
      "id": "CVE-2026-54265",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54265 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ce0ec1f-3eb9-5b9a-a498-4d123b108146",
      "id": "CVE-2026-54266",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54266 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b91979ba-722f-5366-aec3-b5a24617cb7b",
      "id": "CVE-2026-54267",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54267 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aeb7ea39-43fa-5482-8be5-b6a9d0d0b328",
      "id": "CVE-2026-54268",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54268 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffdc67ba-c503-5fad-a3ac-9e787af82654",
      "id": "CVE-2026-68945",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-68945 does not affect version 5.2.11-tuxcare.1 of @angular/http. not_affected \u2014 Angular 5.2.11 is NOT affected by CVE-2026-68945. The vulnerable component `HttpTransferCache` does not exist in this version. This feature was introduced in Angular v16 as part of the modern SSR hydration system. Angular 5.2.11 only has the basic `TransferState` API (a generic key-value store for manual state transfer), not the automatic HTTP request caching interceptor that contains the vulne..."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c10f4f9-6f36-564d-a419-f2ebafdb8ca5",
      "id": "CVE-2026-69149",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69149 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:485a317e-93c6-5507-ad34-60c904f4ba3b",
      "id": "CVE-2026-69151",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-69151 affects version 5.2.11-tuxcare.1 of @angular/http."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/http@5.2.11-tuxcare.1"
    }
  ]
}