Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

vercel — Vulnerabilities & Security Advisories 68

Browse all 68 CVE security advisories affecting vercel. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Vercel operates as a cloud platform for frontend development, primarily hosting static sites and serverless functions. With thirty-five recorded Common Vulnerabilities and Exposures, the platform has historically faced issues ranging from Cross-Site Scripting (XSS) to Remote Code Execution (RCE). These vulnerabilities often stem from complex dependency chains or misconfigured serverless environments rather than fundamental architectural flaws. Notable incidents have included data exposure risks due to improper header configurations and potential privilege escalation through flawed API access controls. While the platform emphasizes rapid deployment, its reliance on third-party libraries and dynamic runtime environments introduces attack surfaces that require rigorous input validation and secure coding practices. Security audits frequently highlight the need for strict isolation between tenant environments to prevent cross-tenant data leakage, ensuring that the convenience of serverless architecture does not compromise overall system integrity.

CVE ID Title CVSS Severity Published
CVE-2026-103004 next.js cache leak on warm `use cache` handlers accessing root param — next.js CWE-524 6.3 Medium 2026-10-01
CVE-2026-94545 Satori-generated SVG has improper escaping — satori CWE-116 5.3 Medium 2026-09-30
CVE-2026-75604 Next.js: Unauthenticated Remote Code Execution on windows-hosted servers — next.js CWE-22 9.0 Critical 2026-09-01
CVE-2026-64649 Next.js: Server-Side Request Forgery in Server Actions on Custom Servers — next.js CWE-918 8.3 High 2026-07-27
CVE-2026-64648 Next.js: Response Body Cache Confusion for Requests Containing Bodies — next.js CWE-524 6.0 Medium 2026-07-27
CVE-2026-64647 Next.js: Response Body Cache Confusion with Invalid UTF-8 Request Bodies — next.js CWE-116 6.3 Medium 2026-07-27
CVE-2026-64646 Next.js: Unbounded Server Action payload in Edge runtime — next.js CWE-770 6.3 Medium 2026-07-27
CVE-2026-64644 Next.js: Denial of Service in the Image Optimization API using SVGs — next.js CWE-407 6.3 Medium 2026-07-27
CVE-2026-64643 Next.js: Unauthenticated Disclosure of Internal Server Function endpoints — next.js CWE-201 6.3 Medium 2026-07-27
CVE-2026-64642 Next.js: Middleware / Proxy bypass in App Router applications using Turbopack and single locale — next.js CWE-285 8.3 High 2026-07-27
CVE-2026-64641 Next.js: Denial of Service in App Router using Server Actions — next.js CWE-834 8.2 High 2026-07-27
CVE-2026-64645 Next.js: Server-Side Request Forgery in rewrites via attacker-controlled destination hostname — next.js CWE-918 8.3 High 2026-07-27
CVE-2026-64650 AI SDK Codex Harness Tool Relay Authorization Bypass — @ai-sdk/harness-codex CWE-863 - - 2026-07-20
CVE-2026-64651 AI SDK OpenCode Harness Tool Relay Authorization Bypass — @ai-sdk/harness-opencode CWE-863 - - 2026-07-20
CVE-2026-8769 vercel ai provider-utils response-handler.ts createJsonErrorResponseHandler resource consumption — ai CWE-400 4.3 Medium 2026-05-17
CVE-2026-8768 vercel ai provider-utils download-blob.ts validateDownloadUrl server-side request forgery — ai CWE-918 7.3 High 2026-05-17
CVE-2026-8767 vercel ai PR Branch Name Interpolation prettier-on-automerge.yml run os command injection — ai CWE-78 5.0 Medium 2026-05-17
CVE-2026-45773 Turborepo: Login callback CSRF/session fixation — turborepo CWE-352 - - 2026-05-15
CVE-2026-46508 Turborepo: VSCode Extension command injection — turborepo CWE-77 - - 2026-05-15
CVE-2026-45772 Turborepo: Unexpected local code execution during Yarn Berry detection — turborepo CWE-426 - - 2026-05-15
CVE-2026-45109 Next.js: Middleware / Proxy bypass in App Router applications via segment-prefetch routes — next.js CWE-288 7.5 High 2026-05-13
CVE-2026-44582 Next.js: Cache poisoning via collisions in React Server Component cache-busting — next.js CWE-328 3.7 Low 2026-05-13
CVE-2026-44581 Next.js: Cross-site scripting in App Router applications using CSP nonces — next.js CWE-79 4.7 Medium 2026-05-13
CVE-2026-44580 Next.js: Cross-site scripting in beforeInteractive scripts with untrusted input — next.js CWE-79 6.1 Medium 2026-05-13
CVE-2026-44579 Next.js: Denial of Service via connection exhaustion in applications using Cache Components — next.js CWE-770 7.5 High 2026-05-13
CVE-2026-44578 Next.js: Server-side request forgery in applications using WebSocket upgrades — next.js CWE-918 8.6 High 2026-05-13
CVE-2026-44577 Next.js: Denial of Service in the Image Optimization API — next.js CWE-770 5.9 Medium 2026-05-13
CVE-2026-44576 Next.js: Cache poisoning in React Server Component responses — next.js CWE-436 5.4 Medium 2026-05-13
CVE-2026-44574 Next.js: Middleware / Proxy bypass through dynamic route parameter injection — next.js CWE-288 8.1 High 2026-05-13
CVE-2026-44575 Next.js: Middleware / Proxy bypass in App Router applications via segment-prefetch routes — next.js CWE-288 7.5 High 2026-05-13

This page lists every published CVE security advisory associated with vercel. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.