{"id":"ECHO-648e-216f-12af","modified":"2026-09-28T00:45:57.644761418Z","published":"2026-09-28T00:01:00.453Z","upstream":["CVE-2026-46597","GHSA-q4h4-gmj2-qvw2"],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-46597"},{"type":"WEB","url":"https://go.dev/issue/79561"}],"affected":[{"package":{"name":"golang.org/x/crypto","ecosystem":"Echo:Go","purl":"pkg:golang/golang.org/x/crypto"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.52.0"}]}],"database_specific":{"source":"https://advisory.echohq.com/osv/ECHO-648e-216f-12af.json"}}],"schema_version":"1.9.0"}