Package impact
NPM / turbo
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-45772 | critical | 9.8 | 9.8 | 13d ago | Turbo: Unexpected local code execution during Yarn Berry detection | |||
| CVE-2026-45773 | medium | 6.5 | 6.5 | 13d ago | Trubo: Login callback CSRF/session fixation |