{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4edb7b3e-16d6-52a2-8584-c2c2373b6693",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16",
      "type": "library",
      "name": "@angular/platform-webworker-dynamic",
      "version": "5.2.11-tuxcare.16",
      "purl": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:fa9b7d27-a4b9-5a3e-ba37-177cb99d8ae6",
      "id": "CVE-2021-4231",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-4231 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98652d56-9801-50e2-b3eb-aad046975f9b",
      "id": "CVE-2025-66035",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66035 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a67bc30-cee9-5e93-9915-97f28f890eeb",
      "id": "CVE-2025-66412",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66412 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b10b0080-28f5-53c3-9618-27bcd0be7710",
      "id": "CVE-2026-22610",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22610 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56c8298a-9a6f-5a36-9270-268e40106545",
      "id": "CVE-2026-27970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27970 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e281d2d-0e9a-5004-9ba5-88484995d4ba",
      "id": "CVE-2026-41423",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41423 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d40eac96-cda7-5237-8e69-00df0900e486",
      "id": "CVE-2026-46417",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46417 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90e420fb-4666-5e40-b996-108bd339f5a9",
      "id": "CVE-2026-50168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50168 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d65fc31-5515-50cc-ab28-c7c9685518cc",
      "id": "CVE-2026-50169",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50169 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e13a9c49-ca16-5971-a36c-3627eee5a149",
      "id": "CVE-2026-50170",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50170 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5cbe5dd-360b-504a-be01-1947b1e608eb",
      "id": "CVE-2026-50171",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50171 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9df0a58-36a8-55f4-87a9-c057aa31fcd5",
      "id": "CVE-2026-50184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50184 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dab2d405-d29b-501c-9f3a-a981cbe6f589",
      "id": "CVE-2026-50555",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50555 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6333dbc1-f779-5f3f-8b68-852313833fc4",
      "id": "CVE-2026-50556",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50556 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbe02980-27f6-57a8-8e91-bb061f2a4a5a",
      "id": "CVE-2026-50557",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50557 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b4d4359-1539-5815-bcf9-85fe8e3e2ce4",
      "id": "CVE-2026-52725",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-52725 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c88abe6-9187-5d67-bcd0-4f545bad6541",
      "id": "CVE-2026-54264",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54264 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96eaae7a-3e34-541f-a84e-e13a16a067f9",
      "id": "CVE-2026-54265",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54265 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e33ba58-7cc2-5ad4-b90d-d44c8b13b09c",
      "id": "CVE-2026-54266",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54266 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64dd0005-5924-5f09-a239-f1fbd755025f",
      "id": "CVE-2026-54267",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54267 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3b7535c-a352-575d-9c09-0718147b4584",
      "id": "CVE-2026-54268",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54268 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c32aa932-31d1-5bde-97c5-0e6e9852384d",
      "id": "CVE-2026-68945",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-68945 does not affect version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic. not_affected \u2014 Angular 5.2.11 is NOT affected by CVE-2026-68945. The vulnerable component `HttpTransferCache` does not exist in this version. This feature was introduced in Angular v16 as part of the modern SSR hydration system. Angular 5.2.11 only has the basic `TransferState` API (a generic key-value store for manual state transfer), not the automatic HTTP request caching interceptor that contains the vulne..."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:604560ac-7009-59b0-8a94-6459b5d1df18",
      "id": "CVE-2026-69149",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-69149 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c76d3761-cd88-58c5-b341-cd75d2b5a129",
      "id": "CVE-2026-69151",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-69151 is fixed in version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76a49777-0aff-53e5-ad2b-f2a133a600ec",
      "id": "CVE-2026-88056",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88056 does not affect version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic. not_affected \u2014 Angular 5.2.11-tuxcare.19 does not contain the vulnerable URL resolution code pattern described in CVE-2026-88056. The vulnerability requires the url.ts file with parseUrl function calling String.prototype.trim() and the relativeUrlsTransformerInterceptorFn HTTP interceptor, both introduced in later Angular versions (post-June 2026). The target version uses a fundamentally different architectur..."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af732d31-51a5-57d3-92be-2b6d9eec80eb",
      "id": "CVE-2026-88057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88057 affects version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1281712e-7546-5adf-8724-fac4e41c2a0e",
      "id": "CVE-2026-88059",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88059 does not affect version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic. not_affected \u2014 Angular 5.2.11 is NOT AFFECTED by CVE-2026-88059. The vulnerability requires HttpTransferCache with hierarchical HttpClient delegation (withRequestsMadeViaParent()), features that were introduced in Angular v16. Angular 5.2.11 predates these features by approximately 6+ years and contains only a basic HTTP interceptor architecture with no automatic response caching mechanism. While TransferStat..."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e79d3f8-7cba-59a3-8ee5-f2fca362db94",
      "id": "CVE-2026-88060",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88060 affects version 5.2.11-tuxcare.16 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.16"
    }
  ]
}