{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1b5ef488-7eb4-55ed-b101-bdbd10b1ad5b",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@astrojs/internal-helpers",
      "purl": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7",
      "type": "library",
      "bom-ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7",
      "version": "3.6.5-tuxcare.7",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-47885",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:4ab4ab22-4177-5fde-b6a2-8d83ed548bad",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-47885 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2024-56140",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:fc1bb28a-5ed0-5495-9ef9-a9c7a42d9d1a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56140 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2024-56159",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:1f976988-9d5f-5d89-9551-7911eb5adf2a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56159 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2025-55303",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:d618bf6c-ff28-5491-b951-49672eb92f5c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55303 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2025-61925",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:f4c141c4-0e97-5127-a89c-fa6edcfc27c0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61925 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2025-64525",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:53040404-0703-5217-ad68-b2e061b7678e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64525 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2025-64757",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:5b3a5fb8-ba2b-5de4-b4df-ebb3b6dd9a0a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64757 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2025-64764",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:c2fed619-f108-5a69-a926-e3ac25844d6c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64764 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2025-64765",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:c71fbc36-5114-51af-b3eb-0d3ed8987190",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64765 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2025-65019",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:743b323b-b700-5638-9e7c-f25102e8f02f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-65019 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2025-66202",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:c195e342-df72-55b5-a775-3c462fff6478",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66202 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2026-33769",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:93c4e9a9-1377-5f7d-99a6-ba94285f7828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-33769 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2026-41067",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:3fe6002e-dadd-52be-b7fb-853544bc37a5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41067 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2026-45028",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:17ebed2e-9b15-5b2b-a6f8-f4c6a061b06f",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-45028 does not affect version 3.6.5-tuxcare.7 of @astrojs/internal-helpers. not_affected \u2014 Astro version 3.6.5 is NOT AFFECTED by CVE-2026-45028. The vulnerability concerns server islands encryption (AES-GCM ciphertext replay between props and slots), but server islands functionality does not exist in version 3.6.5. The feature was introduced in later versions (~May 2025, v5.x/6.x), and the vulnerability was fixed in v6.1.10 (April 2026). Exhaustive search across 327 source files con...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-50146",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:6b4de7b8-735c-5882-8499-d55c83f92328",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-50146 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2026-54298",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:3aec22fc-8cb1-51de-9d30-f324dc981d7e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54298 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2026-54299",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:bc93ca2d-b07b-595c-b2db-b1ebc1108aa5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54299 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2026-59728",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:ceea7d21-4108-5e91-a163-34f27452fcff",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59728 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2026-59729",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:b522e7a3-7d73-5d85-9241-96a2b7049008",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59729 is fixed in version 3.6.5-tuxcare.7 of @astrojs/internal-helpers."
      }
    },
    {
      "id": "CVE-2026-73422",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:44c4b435-0fa0-5925-9ddb-01c21c0d364a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-73422 affects version 3.6.5-tuxcare.7 of @astrojs/internal-helpers, and is fixed in 3.6.5-tuxcare.8."
      }
    },
    {
      "id": "CVE-2026-84376",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:3bd171cb-48f4-5b13-9ce9-8a3ef087f64e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-84376 affects version 3.6.5-tuxcare.7 of @astrojs/internal-helpers, and is fixed in 3.6.5-tuxcare.9."
      }
    },
    {
      "id": "GHSA-26w7-cxv4-gfx2",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:bd54261b-2262-54f9-bd26-db27378b2133",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-26w7-cxv4-gfx2 affects version 3.6.5-tuxcare.7 of @astrojs/internal-helpers, and is fixed in 3.6.5-tuxcare.9."
      }
    },
    {
      "id": "GHSA-4g3v-8h47-v7g6",
      "affects": [
        {
          "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:875ed5da-efd3-5d48-84f6-ebafba131ebd",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4g3v-8h47-v7g6 affects version 3.6.5-tuxcare.7 of @astrojs/internal-helpers, and is fixed in 3.6.5-tuxcare.8."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40astrojs/internal-helpers@3.6.5-tuxcare.7"
    }
  ]
}