{"data":{"ecosystem":"npm","name":"redis","url":"https://aisecwatch.com/packages/npm/redis","latestVersion":"6.3.0","firstReleaseAt":"2010-12-30T01:49:26.231Z","repository":"https://github.com/redis/node-redis","llm":{"exposure":"none","depth":null,"integratedAt":null,"integratedVersion":null,"sdks":[],"path":[]},"authority":{"profile":[],"fromDependencies":[]},"dependencies":[{"ecosystem":"npm","name":"@redis/bloom","versionSpec":"6.3.0","scope":"runtime"},{"ecosystem":"npm","name":"@redis/client","versionSpec":"6.3.0","scope":"runtime"},{"ecosystem":"npm","name":"@redis/json","versionSpec":"6.3.0","scope":"runtime"},{"ecosystem":"npm","name":"@redis/search","versionSpec":"6.3.0","scope":"runtime"},{"ecosystem":"npm","name":"@redis/time-series","versionSpec":"6.3.0","scope":"runtime"}],"advisories":[{"id":"ac8a22a8-c4e1-4f09-8c7e-8ab1d5ae7be6","url":"https://aisecwatch.com/issues/ac8a22a8-c4e1-4f09-8c7e-8ab1d5ae7be6","cveId":"CVE-2023-28858","title":"CVE-2023-28858: redis-py before 4.5.3 leaves a connection open after canceling an async Redis command at an inopportune time, and can…","headline":"redis-py async connection leaks response data to unrelated requests","severity":"low","publishedAt":"2023-03-26T23:15:06.780Z","affected":["redis@>= 4.4.0, < 4.4.3 (fixed: 4.4.3)","redis@>= 4.5.0, < 4.5.3 (fixed: 4.5.3)","redis@>= 4.2.0, < 4.3.6 (fixed: 4.3.6)"],"epssScore":0.01018}],"checkedAt":"2026-10-09T23:27:32.006Z"},"meta":{"advisoryMatching":"by package name; advisory records do not state an ecosystem"}}