{"id":"ECHO-0663-1480-e28f","upstream":["CVE-2026-64649","GHSA-89xv-2m56-2m9x"],"severity":[],"modified":"2026-09-28T00:02:23.924Z","affected":[{"package":{"ecosystem":"Echo:npm","name":"next","purl":"pkg:npm/next"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"15.5.21"}]}]}],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-64649"}]}