{"id":"ECHO-0e19-deb4-9c3d","modified":"2026-09-30T11:45:21.120020133Z","published":"2026-09-28T00:02:12.739Z","upstream":["CVE-2026-50645","GHSA-ghvc-7hp8-2g2v"],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-50645"},{"type":"WEB","url":"https://github.com/advisories/GHSA-ghvc-7hp8-2g2v"}],"affected":[{"package":{"name":"org.apache.cxf:cxf-core","ecosystem":"Echo:Maven","purl":"pkg:maven/org.apache.cxf/cxf-core"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.6.12"}]}],"database_specific":{"source":"https://advisory.echohq.com/osv/ECHO-0e19-deb4-9c3d.json"}}],"schema_version":"1.9.0"}