{"id":"ECHO-72a3-0efc-e50d","modified":"2026-09-28T00:45:41.267328868Z","published":"2026-09-28T00:01:57.149Z","upstream":["CVE-2026-44288","GHSA-q6x5-8v7m-xcrf"],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-44288"},{"type":"WEB","url":"https://github.com/advisories/GHSA-q6x5-8v7m-xcrf"}],"affected":[{"package":{"name":"protobufjs","ecosystem":"Echo:npm","purl":"pkg:npm/protobufjs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.1.1"}]}],"database_specific":{"source":"https://advisory.echohq.com/osv/ECHO-72a3-0efc-e50d.json"}},{"package":{"name":"@protobufjs/utf8","ecosystem":"Echo:npm","purl":"pkg:npm/%40protobufjs%2Futf8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.1.1"}]}],"database_specific":{"source":"https://advisory.echohq.com/osv/ECHO-72a3-0efc-e50d.json"}}],"schema_version":"1.9.0"}