{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ad8973e2-787c-5e03-a3cf-71d839350377",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18",
      "type": "library",
      "name": "@angular/platform-webworker-dynamic",
      "version": "5.2.11-tuxcare.18",
      "purl": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ba289888-5fc2-55b5-9250-050ef2f988dc",
      "id": "CVE-2021-4231",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-4231 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b42d05d8-f927-5942-9f2a-890787c3f36e",
      "id": "CVE-2025-66035",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66035 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b0a657f-38af-58f0-bfc7-7ae36f4d1921",
      "id": "CVE-2025-66412",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66412 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c93d9888-6633-50db-8ee6-ce573f63dc4e",
      "id": "CVE-2026-22610",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22610 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc9e9935-3603-5d01-b944-2c9dcd7953df",
      "id": "CVE-2026-27970",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27970 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18eec47f-9681-5e2e-ace9-09136c781350",
      "id": "CVE-2026-41423",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41423 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8410355-7f3b-57cc-bd61-c408863e6789",
      "id": "CVE-2026-46417",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-46417 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d8f96f5-407b-5ffd-846a-d0d41368132e",
      "id": "CVE-2026-50168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50168 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0ff2f25-9692-51c9-b442-a9ab57fbacfd",
      "id": "CVE-2026-50169",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50169 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf64e7de-4d69-53b1-a20a-e8380e1ecd37",
      "id": "CVE-2026-50170",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50170 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f61936d6-0bc9-5be4-861c-0d0920b06a90",
      "id": "CVE-2026-50171",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50171 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f8d6480-9200-52cc-a6d7-faf99f6b5893",
      "id": "CVE-2026-50184",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50184 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9402951c-8b2b-52c7-83f9-322bcb6d3c85",
      "id": "CVE-2026-50555",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50555 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:683c1488-47fb-5305-9c50-59a37cdfcce2",
      "id": "CVE-2026-50556",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50556 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:314fc07b-3e0b-53c3-b54b-f67b852190f6",
      "id": "CVE-2026-50557",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50557 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5ff3108-d83a-5807-a569-ea4f378f559b",
      "id": "CVE-2026-52725",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-52725 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:222132f2-1776-5763-82eb-a521acb2456d",
      "id": "CVE-2026-54264",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54264 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d046ab9-9f13-510e-a93d-4e98c58dc492",
      "id": "CVE-2026-54265",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54265 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4436672-dd63-5393-94c3-27b2e74cf020",
      "id": "CVE-2026-54266",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54266 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38359a18-852f-5ac6-92e0-165869c2f87e",
      "id": "CVE-2026-54267",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54267 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e62dfb3f-d58d-513d-be77-94c1b097bab6",
      "id": "CVE-2026-54268",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54268 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcda3197-d909-57c4-ba63-075c0caf707e",
      "id": "CVE-2026-68945",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-68945 does not affect version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic. not_affected \u2014 Angular 5.2.11 is NOT affected by CVE-2026-68945. The vulnerable component `HttpTransferCache` does not exist in this version. This feature was introduced in Angular v16 as part of the modern SSR hydration system. Angular 5.2.11 only has the basic `TransferState` API (a generic key-value store for manual state transfer), not the automatic HTTP request caching interceptor that contains the vulne..."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80d0d7fc-858d-573b-b8b7-9f907f185563",
      "id": "CVE-2026-69149",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-69149 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d19597d-53a1-5a7e-8827-049fb790d434",
      "id": "CVE-2026-69151",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-69151 is fixed in version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e382d2dc-5003-5ec4-a022-79ea90baccf8",
      "id": "CVE-2026-88056",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88056 does not affect version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic. not_affected \u2014 Angular 5.2.11-tuxcare.19 does not contain the vulnerable URL resolution code pattern described in CVE-2026-88056. The vulnerability requires the url.ts file with parseUrl function calling String.prototype.trim() and the relativeUrlsTransformerInterceptorFn HTTP interceptor, both introduced in later Angular versions (post-June 2026). The target version uses a fundamentally different architectur..."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9015784-14f2-517c-9bbb-7134253e8d1c",
      "id": "CVE-2026-88057",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88057 affects version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44818c9d-ab18-584a-be39-9b2489161ca4",
      "id": "CVE-2026-88059",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-88059 does not affect version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic. not_affected \u2014 Angular 5.2.11 is NOT AFFECTED by CVE-2026-88059. The vulnerability requires HttpTransferCache with hierarchical HttpClient delegation (withRequestsMadeViaParent()), features that were introduced in Angular v16. Angular 5.2.11 predates these features by approximately 6+ years and contains only a basic HTTP interceptor architecture with no automatic response caching mechanism. While TransferStat..."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc4b789b-acdb-572e-aa02-4e9f08684fc1",
      "id": "CVE-2026-88060",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-88060 affects version 5.2.11-tuxcare.18 of @angular/platform-webworker-dynamic."
      },
      "affects": [
        {
          "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40angular/platform-webworker-dynamic@5.2.11-tuxcare.18"
    }
  ]
}