{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:a22ea0a8-ccd5-55aa-b016-277c51ed7560",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:npm/next@13.5.11-tuxcare.14",
      "type": "library",
      "name": "next",
      "version": "13.5.11-tuxcare.14",
      "purl": "pkg:npm/next@13.5.11-tuxcare.14"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d8b24144-eb23-5628-9d37-ef7b623390f1",
      "id": "AIKIDO-2024-10173",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability AIKIDO-2024-10173 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80121b19-9a92-5dd7-8dc6-fc3e2984c35c",
      "id": "AIKIDO-2025-10936",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability AIKIDO-2025-10936 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:290e44c8-a902-58b2-a072-8f1e0e875a0d",
      "id": "CVE-2024-34351",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34351 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e212ed5-9ea7-5d03-a6fd-d965b03f2f71",
      "id": "CVE-2024-47831",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47831 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3d0c480-12ee-54c9-a681-4cf762019f24",
      "id": "CVE-2024-51479",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-51479 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c63e8c4-6fb0-59ef-b3e5-84015c08f99f",
      "id": "CVE-2025-32421",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-32421 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82c900b7-18e2-5210-b23a-05f702024427",
      "id": "CVE-2025-48068",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48068 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbc8c7bd-cf87-52d8-bad6-81838ec1d470",
      "id": "CVE-2025-55173",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55173 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84074757-86a0-5dbf-a015-a1a3ddd10a24",
      "id": "CVE-2025-57752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-57752 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aa88863-fb97-54d4-bbb5-523e7861567f",
      "id": "CVE-2025-57822",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-57822 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7332e77-9fa1-55a2-9742-42ec887998bf",
      "id": "CVE-2025-59471",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59471 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1138d411-a6f9-540b-90f2-4d80b9736664",
      "id": "CVE-2025-59472",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-59472 does not affect version 13.5.11-tuxcare.14 of next. not_affected \u2014 Version 13.5.11-tuxcare.13 is not affected by CVE-2025-59472. The vulnerable PPR (Partial Prerendering) resume endpoint feature does not exist in this version. The resume endpoint handler that processes `Next-Resume: 1` headers, the postponed-state processing logic, and the resume-data-cache decompression code were all introduced in much later Next.js versions (v16.3.0+). Version 13.5.11 predat..."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1443c0a2-5d40-54f2-9ba8-6fe51b9c0938",
      "id": "CVE-2025-67779",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67779 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e1c3089-82c9-50c4-8973-e952f4daf272",
      "id": "CVE-2026-27980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27980 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e37e211-30dd-500a-9067-eb6e2ff330c3",
      "id": "CVE-2026-29057",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29057 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b268d762-7235-5d37-a372-71f0331d72ad",
      "id": "CVE-2026-44572",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44572 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:246cb38e-febc-5ddd-87b7-dc08db9d7cf9",
      "id": "CVE-2026-44573",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44573 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34c41f10-81ab-5efd-aabd-ec1e63b864a1",
      "id": "CVE-2026-44577",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44577 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0f11fd0-0979-5358-8d78-2ba5e3e46f86",
      "id": "CVE-2026-44578",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44578 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad6a2fee-ac09-5d68-b85d-d6d222d7dec2",
      "id": "CVE-2026-44580",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44580 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c52c79b6-afd4-502f-8ba5-c4a3632f70b9",
      "id": "CVE-2026-44581",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44581 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7aee94f0-55cf-5087-97fd-ea4befd085a6",
      "id": "CVE-2026-44582",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44582 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36737c1e-3196-5b4b-a7d3-c31ab0cc2a1b",
      "id": "CVE-2026-64641",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-64641 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09eb8c71-9a44-5e9e-b1c4-19e2ee61aed9",
      "id": "CVE-2026-64643",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-64643 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:966cde98-9e90-5598-9873-534cedf1c369",
      "id": "CVE-2026-64645",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-64645 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:641949bc-003d-5289-bf47-420794638a96",
      "id": "CVE-2026-64646",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-64646 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c51482f-1e29-50e3-ac70-04739646cdbb",
      "id": "CVE-2026-64647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-64647 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a14e6d0d-40e3-5fcb-b392-0be582da7e55",
      "id": "CVE-2026-64648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-64648 affects version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf56bc68-f477-517e-b0ec-171ea1b87a10",
      "id": "GHSA-5j59-xgg2-r9c4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-5j59-xgg2-r9c4 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:994e1783-b812-5cc0-b775-11e72969c9b8",
      "id": "GHSA-8h8q-6873-q5fj",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-8h8q-6873-q5fj is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:558723bc-9563-5f53-a698-cffdb5fde97e",
      "id": "GHSA-h25m-26qc-wcjf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-h25m-26qc-wcjf is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c357519-2c78-5f76-9dd7-477e03278c79",
      "id": "GHSA-mwv6-3258-q52c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-mwv6-3258-q52c is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9d481e2-41e1-5a2f-a0d3-ebb8e6d93e5b",
      "id": "GHSA-q4gf-8mx6-v5v3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-q4gf-8mx6-v5v3 is fixed in version 13.5.11-tuxcare.14 of next."
      },
      "affects": [
        {
          "ref": "pkg:npm/next@13.5.11-tuxcare.14"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/next@13.5.11-tuxcare.14"
    }
  ]
}