vercel
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 89 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from January 23, 2017 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →vercel ai provider-utils response-handler.ts createJsonErrorResponseHandler resource consumption
vercel ai provider-utils download-blob.ts validateDownloadUrl server-side request forgery
vercel ai PR Branch Name Interpolation prettier-on-automerge.yml run os command injection
Turborepo: Login callback CSRF/session fixation
Turborepo: VSCode Extension command injection
Turborepo: Unexpected local code execution during Yarn Berry detection
Next.js: Middleware / Proxy bypass in App Router applications via segment-prefetch routes
Next.js: Middleware / Proxy redirects can be cache-poisoned
Next.js: Cross-site scripting in App Router applications using CSP nonces
Next.js: Cache poisoning via collisions in React Server Component cache-busting
Monitor vercel in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.