Z
ZEIT
Security Risk Profile
28
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 9 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from November 17, 2017 to present
9
Total CVEs
4
Critical+High
0
Exploited
2
Unpatched
Threat Assessment
Avg CVSS
6.4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
2
Critical/High
Risk Level
28/100
low
Severity Distribution
Critical
0High
4Medium
5Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
6
2
XSS
1
3
Infoleak
1
Most Affected Products
1. ZEIT Next.js21
2. ZEIT Serve Node.js4
3. npm/serve2
4. ZEIT Serve1
5. npm/next1
Recent Vulnerabilities
See more →CVE-2020-5284
CVSS 4.4medium
Directory Traversal in Next.js versions below 9.3.2
Mar 30, 2020🔧 No Patch
CVE-2019-5415
CVSS 7.5high
Mar 17, 2019
CVE-2019-5417
CVSS 7.5high
Mar 17, 2019🔧 No Patch
CVE-2018-18282
CVSS 6.1medium
Oct 12, 2018🔧 No Patch
CVE-2018-3718
CVSS 5.3medium
Jun 7, 2018
CVE-2018-3712
CVSS 6.5medium
Jun 7, 2018🔧 No Patch
CVE-2018-3809
CVSS 5.3medium
Jun 1, 2018🔧 No Patch
CVE-2018-6184
CVSS 7.5high
Jan 24, 2018🔧 No Patch
CVE-2017-16877
CVSS 7.5high
Nov 17, 2017
Monitor ZEIT in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.