{"id":"ECHO-c2ee-9663-f8c4","modified":"2026-09-28T00:45:36.640688552Z","published":"2026-09-28T00:01:00.453Z","upstream":["CVE-2026-39830","GHSA-vgwf-h737-ff37"],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-39830"},{"type":"WEB","url":"https://go.dev/issue/79564"}],"affected":[{"package":{"name":"golang.org/x/crypto","ecosystem":"Echo:Go","purl":"pkg:golang/golang.org/x/crypto"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.52.0"}]}],"database_specific":{"source":"https://advisory.echohq.com/osv/ECHO-c2ee-9663-f8c4.json"}}],"schema_version":"1.9.0"}