{"id":"ECHO-b453-6acb-8261","upstream":["CVE-2026-54399","GHSA-hf6x-8p5f-cgmf"],"severity":[],"modified":"2026-09-28T00:02:14.271Z","affected":[{"package":{"ecosystem":"Echo:Maven","name":"httpcore5","purl":"pkg:maven/httpcore5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.4.3"}]}]},{"package":{"ecosystem":"Echo:Maven","name":"org.apache.httpcomponents.core5:httpcore5","purl":"pkg:maven/org.apache.httpcomponents.core5/httpcore5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.4.3"}]}]}],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-54399"}]}