{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-08-02T08:42:06.518","vulnerabilities":[{"cve":{"id":"CVE-2024-39693","sourceIdentifier":"security-advisories@github.com","published":"2024-07-10T20:15:04.543","lastModified":"2026-06-17T07:42:28.997","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"Next.js is a React framework. A Denial of Service (DoS) condition was identified in Next.js. Exploitation of the bug can trigger a crash, affecting the availability of the server. his vulnerability was resolved in Next.js 13.5 and later."},{"lang":"es","value":"Next.js es un framework de React. Se identificó una condición de denegación de servicio (DoS) en Next.js. La explotación del error puede provocar una falla que afecte la disponibilidad del servidor. su vulnerabilidad se resolvió en Next.js 13.5 y versiones posteriores."}],"affected":[{"source":"security-advisories@github.com","affectedData":[{"vendor":"vercel","product":"next.js","versions":[{"version":">= 13.3.1, < 13.5.0","status":"affected"}]}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","affectedData":[{"vendor":"vercel","product":"next.js","defaultStatus":"unknown","cpes":["cpe:2.3:a:vercel:next.js:*:*:*:*:*:node.js:*:*"],"versions":[{"version":"13.4.0","lessThan":"13.5.0","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"security-advisories@github.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":3.6}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-07-11T14:15:26.573358Z","id":"CVE-2024-39693","options":[{"exploitation":"none"},{"automatable":"yes"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"security-advisories@github.com","type":"Secondary","description":[{"lang":"en","value":"CWE-400"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:vercel:next.js:*:*:*:*:*:node.js:*:*","versionStartIncluding":"13.3.1","versionEndExcluding":"13.5.0","matchCriteriaId":"11B00529-A36C-417F-86AF-534965D056B4"}]}]}],"references":[{"url":"https://github.com/vercel/next.js/security/advisories/GHSA-fq54-2j52-jc42","source":"security-advisories@github.com","tags":["Vendor Advisory"]},{"url":"https://github.com/vercel/next.js/security/advisories/GHSA-fq54-2j52-jc42","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}