{"id":"ECHO-b39d-0c13-31fe","summary":"Rejected by MITRE TL-Root on 2025-12-02. The CNA \"did not identify a\nvalid vulnerability based on the vendor's product security model\" and\nnoted the assignment conflicts with the existing (also disputed)\nCVE-2023-48022. No code-level fix exists.\n","modified":"2026-09-15T03:33:39.339223542Z","published":"2026-05-12T16:42:53.747289Z","withdrawn":"2026-05-12T14:07:42.799Z","upstream":["CVE-2025-34351","GHSA-gx77-xgc2-4888"],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2025-34351"}],"affected":[{"package":{"name":"ray","ecosystem":"Echo:PyPI","purl":"pkg:pypi/ray"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.52.0+echo.1"}]}],"database_specific":{"source":"https://advisory.echohq.com/osv/ECHO-b39d-0c13-31fe.json"}}],"schema_version":"1.9.0"}