{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:950a6fe6-599b-5acc-9dbb-e5fcae7a4c20",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@next/env",
      "purl": "pkg:npm/%40next/env@13.5.11-tuxcare.17",
      "type": "library",
      "bom-ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17",
      "version": "13.5.11-tuxcare.17",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "AIKIDO-2024-10173",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:e3f04fe5-ad3f-5363-9b50-851a2ae11425",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability AIKIDO-2024-10173 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "AIKIDO-2025-10936",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:d1144db4-022f-5e94-809c-95f5f3757d6c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability AIKIDO-2025-10936 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2024-34351",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:05be8663-da71-5970-9520-30e5c4196c91",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34351 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2024-47831",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:8ce4d606-740d-5751-9145-5e3bcc9d1635",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47831 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2024-51479",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:661618fe-0ba1-597a-8f62-a990d7e31061",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-51479 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-32421",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:83733578-0cc7-5e16-bfb7-40e95b41f0ab",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-32421 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-48068",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:b76a207f-583c-5e89-ab2a-de2dc5fc3d71",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48068 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-55173",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:f9141251-6dc2-50e6-8495-e67e6b809a3c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55173 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-55183",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:d37dd17e-40b2-5749-82a2-6b0fac0068ff",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55183 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-55184",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:6a1909e9-7d37-57aa-a878-5016ca284749",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55184 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-57752",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:9122cbbc-f1aa-58e1-9134-b25356838953",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-57752 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-57822",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:b0eae4bb-2804-530e-9772-445c3a4299af",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-57822 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-59471",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:b66a4d25-a7dc-58f1-8e5d-66d57f64f48c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59471 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2025-59472",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:a1043b29-70d0-5979-b5e1-4380176deebc",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-59472 does not affect version 13.5.11-tuxcare.17 of @next/env. not_affected \u2014 Version 13.5.11-tuxcare.13 is not affected by CVE-2025-59472. The vulnerable PPR (Partial Prerendering) resume endpoint feature does not exist in this version. The resume endpoint handler that processes `Next-Resume: 1` headers, the postponed-state processing logic, and the resume-data-cache decompression code were all introduced in much later Next.js versions (v16.3.0+). Version 13.5.11 predat...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2025-67779",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:39d78db3-bc2e-540a-9594-15c648377bff",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-67779 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-27980",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:c380483a-5826-58d3-8116-a056bc6a024e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27980 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-29057",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:f1c3ecc6-6fc3-5cd7-917c-fde6343dee65",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29057 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-44572",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:d4b622d8-40bc-5672-8f3c-b3044589a63b",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44572 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-44573",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:d19d640e-0609-5b4d-8f48-804a85c1d5cf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44573 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-44577",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:7294f2cd-9e8f-5d31-89d1-a101fe362bd9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44577 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-44578",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:b6c713fb-9736-5203-85be-cd91050b8c58",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44578 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-44580",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:2631ec18-058f-5505-9872-34aaa66131e9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44580 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-44581",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:58aaa5b9-e6b5-58e0-b3d6-c3853cc085a4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44581 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-44582",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:af3829c7-9311-51f8-b866-ea99f04e2f34",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44582 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-64641",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:0b32937a-1cc5-5702-ae0c-efd701790b19",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-64641 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-64643",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:56f7c75d-3ae0-5c22-95eb-6f3e0f400b70",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-64643 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-64645",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:384d2a5f-8a0d-50c6-90fc-4022ea8988a0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-64645 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-64646",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:5156c194-385e-519b-9373-3f59bb7393d3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-64646 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-64647",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:92d74320-f08f-5d5a-b7e2-416f3d63271e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-64647 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-64648",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:9987f077-74a4-58c5-94af-e071e2f2ade4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-64648 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "CVE-2026-75604",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:e4d0c862-68f5-5e38-afea-d74edb8c6b7f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-75604 affects version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "GHSA-2xp9-vwfh-vxw4",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:7b0fee21-a9e7-5360-8016-3c885cfb29ef",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-2xp9-vwfh-vxw4 affects version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "GHSA-5j59-xgg2-r9c4",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:04e44cc7-0ee9-58f2-8822-e29f75ec0200",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-5j59-xgg2-r9c4 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "GHSA-8h8q-6873-q5fj",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:d5e81c55-5de4-5496-9b57-48b143ca6577",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-8h8q-6873-q5fj is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "GHSA-h25m-26qc-wcjf",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:99f9954f-6a63-566a-ab48-59925f68d64e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-h25m-26qc-wcjf is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "GHSA-mwv6-3258-q52c",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:bb246b0d-3423-5029-b059-337308b6255f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-mwv6-3258-q52c is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    },
    {
      "id": "GHSA-q4gf-8mx6-v5v3",
      "affects": [
        {
          "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
        }
      ],
      "bom-ref": "urn:uuid:2eefb7c3-5f21-5074-8fe8-006cb8f971d2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-q4gf-8mx6-v5v3 is fixed in version 13.5.11-tuxcare.17 of @next/env."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40next/env@13.5.11-tuxcare.17"
    }
  ]
}