CVE-2026-45321 CRITICAL

TanStack TanStack Vulnerability
Generated: 10 Oct 2026 20:36 • CVE Threat Intelligence

Description

TanStack contains an unspecified vulnerability that allowed malicious versions of the product to be published to the npm registry to publish credential-stealing malware under a trusted identity.

9.8
CVSS CRITICAL

Details

Published
27 May 2026 00:00
Modified
N/A
Source
CIRCL
Vendor
TanStack
Product
TanStack
Fix Version
Vendor Patch / Mitigation Available