CVE-2026-45321
Sfruttamento noto · CISA KEV
CVSS 9.6 CRITICAL: on 2026-05-11, between approximately 19:20 and 19:26 UTC, 84 malicious versions across 42 @tanstack/* packages were published to the npm registry. EPSS 1% (63º percentile).
Data di correzione federale CISA 10 giu