Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
ECHO-907e-3d79-47e5
See a problem?
Import Source
https://advisory.echohq.com/osv/ECHO-907e-3d79-47e5.json
JSON Data
https://api.osv.dev/v1/vulns/ECHO-907e-3d79-47e5
Upstream
CVE-2026-85732
GHSA-h7vf-4x9w-h99v
Published
2026-09-28T00:02:34Z
Modified
2026-09-28T00:45:55Z
Summary
[none]
Details
References
https://advisory.echohq.com/cve/CVE-2026-85732
https://github.com/advisories/GHSA-h7vf-4x9w-h99v
Affected packages
Echo:Go
/
oras.land/oras-go/v2
Package
Name
oras.land/oras-go/v2
Purl
pkg:golang/oras.land/oras-go/v2
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2.6.2-1
Database specific
source
"https://advisory.echohq.com/osv/ECHO-907e-3d79-47e5.json"
ECHO-907e-3d79-47e5 - OSV