Skip to content

Known CVE

Nextjs <2.4.1 - Local File Inclusion

ZEIT Next.js before 2.4.1 is susceptible to local file inclusion via the /_next and /static request namespace, allowing attackers to obtain sensitive information.

CVE-2017-16877

High2017CVSS 7.5CWE-22

cve2017 · nextjs · lfi · traversal · zeit · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website