{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:da4d582d-e2ed-5d89-a6a4-20f29b53df07",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1",
      "type": "library",
      "name": "fast-uri",
      "version": "2.4.3-tuxcare.1",
      "purl": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d5f7dbb6-d722-5ed4-8a73-d64454babbee",
      "id": "CVE-2023-26136",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-26136 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce520ff6-423b-5a92-905a-c1c9fe38ad8d",
      "id": "CVE-2024-45801",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-45801 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f725d68-d212-54d5-bff6-230e38752711",
      "id": "CVE-2024-47875",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47875 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5478b789-7703-5f60-862d-33f550e7bdf0",
      "id": "CVE-2025-26791",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-26791 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17c3f015-2051-5295-a954-7c84c863bf2c",
      "id": "CVE-2026-16221",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-16221 affects version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8120b66-e4b1-53be-9eff-5c351ff97036",
      "id": "CVE-2026-18446",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-18446 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f78eba10-a206-5692-9ad9-6a750cbd7fee",
      "id": "CVE-2026-41239",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41239 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:50311c88-0794-5377-94ef-c4e634b5046b",
      "id": "CVE-2026-6321",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-6321 affects version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:945c38d8-887e-5ff6-a174-47a4a540df69",
      "id": "CVE-2026-6322",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-6322 does not affect version 2.4.3-tuxcare.1 of fast-uri. not_affected \u2014 CVE-2026-6322 is NOT present in fast-uri v2.4.3. The vulnerability (percent-encoded authority delimiter decoding causing authority structure changes) has been mitigated by upstream vendor fix in commit 23108bc, which introduced the reescapeHostDelimiters() defense. This fix was authored by Matteo Collina (upstream fast-uri maintainer) and backported to the 2.4.x line in fast-uri v2.4.1, prior t..."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5dae60f-79ec-5ce5-a8eb-1833f3474e18",
      "id": "CVE-2026-65898",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-65898 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34d03089-8f3f-5111-b828-ea352b31a5d4",
      "id": "CVE-2026-65901",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-65901 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7c00713-72cf-5fe9-b314-458df87f8760",
      "id": "CVE-2026-65902",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-65902 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:763d2b9f-3f4a-5b98-9b58-35ae8ddea365",
      "id": "CVE-2026-65913",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-65913 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30b0c762-ced8-510b-a592-2db53acc5167",
      "id": "CVE-2026-66010",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-66010 is fixed in version 2.4.3-tuxcare.1 of fast-uri."
      },
      "affects": [
        {
          "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/fast-uri@2.4.3-tuxcare.1"
    }
  ]
}