Zeit / Next.js
4 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-5284 | Directory Traversal in Next.js versions below 9.3.2 | MEDIUM | 4.4 | Mar 30, 2020 |
| CVE-2018-18282 | Next.js 7.0.0 and 7.0.1 has XSS via the 404 or 500 /_error page. | MEDIUM | 6.1 | Oct 12, 2018 |
| CVE-2018-6184 | ZEIT Next.js 4 before 4.2.3 has Directory Traversal under the /_next request namespace. | HIGH | 7.5 | Jan 24, 2018 |
| CVE-2017-16877 | ZEIT Next.js before 2.4.1 has directory traversal under the /_next and /static request namespace, allowing attackers to obtain sensitive information. | HIGH | 7.5 | Nov 17, 2017 |
Showing 1 to 4 of 4 CVEs