Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
pkg:npm/
turbo
2 total CVEs
CRITICAL
1
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.8
CVE-2026-45772
Turbo: Unexpected local code execution during Yarn Berry detection
>= 1.1.0, < 2.9.14
—
CVE-2026-45773
Trubo: Login callback CSRF/session fixation
from 0, < 2.9.14
npm/turbo — 2 CVEs · VulnScope