{"id":"ECHO-9e9b-2656-ec45","upstream":["CVE-2026-49852","GHSA-gg9x-qcx2-xmrh"],"severity":[],"modified":"2026-07-04T00:00:32.482Z","affected":[{"package":{"ecosystem":"Echo:PyPI","name":"joserfc","purl":"pkg:pypi/joserfc"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.6.8"}]}]}],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-49852"},{"type":"WEB","url":"https://github.com/advisories/GHSA-gg9x-qcx2-xmrh"}]}