Blog
vercel/next.js
The React Framework
#react#server-rendering#universal#node#components#browser#nextjs#vercel#static-site-generator#hybrid#ssg#static#blog#compiler
スコア
50
/ 100
Star
139,487
Fork
31,072
Open Issue
2,144
サイズ
2.4GB
言語
JavaScript ★
最終push
0 日前
Docker
—
採点内訳
過去CVE 20件 (やや多い)
✓直近 push: 0 日前
✓得意言語 (JavaScript)
✓オープンissue 2144件
✓超大規模 (2.4GB)
—Docker 未対応
—100k+: ベテラン領域 (★139,487)
—※ 各項目の重みは「採点ルール」を参照。合計は 0 で底打ち。
過去の SecurityAdvisory (20 件)
- Middleware / Proxy bypass in App Router applications via segment-prefetch routes - Incomplete Fix Follow-Up
- Cross-site scripting in App Router applications using CSP nonces
- Cache poisoning via collisions in React Server Component cache-busting
- Cross-site scripting in beforeInteractive scripts with untrusted input
- Denial of Service via connection exhaustion in applications using Cache Components
- Denial of Service in the Image Optimization API
- Server-side request forgery in applications using WebSocket upgrades
- Cache poisoning in React Server Component responses
- Middleware / Proxy bypass in App Router applications via segment-prefetch routes
- Middleware / Proxy bypass through dynamic route parameter injection
- Middleware / Proxy bypass in Pages Router applications using i18n
- Middleware / Proxy redirects can be cache-poisoned
- Denial of Service with Server Components
- Denial of Service with Server Components
- Unbounded next/image disk cache growth can exhaust storage
- null origin can bypass Server Actions CSRF checks
- Origin: null can bypass allowedDevOrigins protections for internal dev endpoints
- Unbounded postponed resume buffering can lead to DoS
- HTTP request smuggling in rewrites
- Denial of Service in Image Optimizer