{"id":"CGA-m5vc-cxgg-g586","modified":"2026-09-28T23:31:00.431326422Z","published":"2026-09-28T16:51:20Z","upstream":["CVE-2026-93750","GHSA-f27v-pv5m-c5g6"],"affected":[{"package":{"name":"npm-12","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/npm-12?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"ecosystem_specific":{"components":[{"component_name":"http-cache-semantics","component_version":"","component_type":"npm","component_location":"/usr/lib/node_modules/npm/node_modules/http-cache-semantics/package.json","component_purl":"pkg:npm/http-cache-semantics","latest_event_status":"detection","latest_event_timestamp":"2026-09-28T16:51:20Z"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-m5vc-cxgg-g586.json"}},{"package":{"name":"npm-12","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/npm-12?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"ecosystem_specific":{"components":[{"component_purl":"pkg:npm/http-cache-semantics","latest_event_status":"detection","latest_event_timestamp":"2026-09-28T16:51:20Z","component_name":"http-cache-semantics","component_version":"","component_type":"npm","component_location":"/usr/lib/node_modules/npm/node_modules/http-cache-semantics/package.json"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-m5vc-cxgg-g586.json"}}],"schema_version":"1.9.0"}