turbo
18 known vulnerabilities · 0 critical · 1 high
Turbo: Unexpected local code execution during Yarn Berry detection
Trubo: Login callback CSRF/session fixation
React Router's vendored turbo-stream v2 allows arbitrary constructor invocation via TYPE_ERROR deserialization leading to Unauth RCE
Malicious code in ddos-turbo-ecma (npm)
Malicious code in @lbnqduy11805/turbo-octo-memory (npm)
Malicious code in turbo-he (npm)
Malicious code in turbo-leven (npm)
Malicious code in ddos-turbo-max (npm)
TurboBoost Commands vulnerable to arbitrary method invocation
Malicious code in react-server-dom-turbopack-experimental (npm)
Malicious code in turbo-axios (npm)
Malicious code in turbo-json-parser (npm)
Malicious code in turbotax (npm)
Malicious code in turbolinks-tests (npm)
Malicious code in turbo-bike-inspector (npm)
Malicious code in @mastra/turbopuffer (npm)
Malicious code in turbolinks_jwt_test2 (npm)