Package impact
npm / @clerk/tanstack-react-start
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-42349 | high | — | 8.0 | 18d ago | Clerk has an authorization bypass when combining organization, billing, or reverification checks | |||
| CVE-2025-53548 | unknown | — | — | 11mo ago | @clerk/backend Performs Insufficient Verification of Data Authenticity |