{"id":"ECHO-7228-fbde-6e25","upstream":["CVE-2026-39852","GHSA-rc95-pcm8-65v9"],"severity":[],"modified":"2026-09-28T00:01:42.039Z","affected":[{"package":{"ecosystem":"Echo:Maven","name":"io.quarkus:quarkus-vertx-http","purl":"pkg:maven/io.quarkus/quarkus-vertx-http"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.20.6.1"}]}]},{"package":{"ecosystem":"Echo:Maven","name":"quarkus-vertx-http","purl":"pkg:maven/quarkus-vertx-http"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.20.6.1"}]}]}],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-39852"},{"type":"WEB","url":"https://github.com/advisories/GHSA-rc95-pcm8-65v9"}]}