{"id":"ECHO-baad-3a65-8f72","upstream":["CVE-2026-63670","GHSA-jxwj-j7wr-gfrw"],"severity":[],"modified":"2026-09-28T00:02:13.485Z","affected":[{"package":{"ecosystem":"Echo:npm","name":"sanitize-html","purl":"pkg:npm/sanitize-html"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.17.6"}]}]}],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2026-63670"},{"type":"WEB","url":"https://github.com/advisories/GHSA-jxwj-j7wr-gfrw"}]}