{"id":"ECHO-cf9a-2800-40c8","upstream":["GHSA-5p4m-2wfm-xmqj"],"severity":[],"modified":"2026-09-28T00:01:15.221Z","affected":[{"package":{"ecosystem":"Echo:npm","name":"js-yaml","purl":"pkg:npm/js-yaml"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.15.1"}]}]}],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/GHSA-5p4m-2wfm-xmqj"},{"type":"WEB","url":"https://github.com/advisories/GHSA-5p4m-2wfm-xmqj"}]}