Vulnerability Details CVE-2024-39693
Next.js is a React framework. A Denial of Service (DoS) condition was identified in Next.js. Exploitation of the bug can trigger a crash, affecting the availability of the server. his vulnerability was resolved in Next.js 13.5 and later.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.9%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-39693
-
cpe:2.3:a:vercel:next.js:13.3.1
-
cpe:2.3:a:vercel:next.js:13.3.2
-
cpe:2.3:a:vercel:next.js:13.3.3
-
cpe:2.3:a:vercel:next.js:13.3.4
-
cpe:2.3:a:vercel:next.js:13.3.5
-
cpe:2.3:a:vercel:next.js:13.4.0
-
cpe:2.3:a:vercel:next.js:13.4.1
-
cpe:2.3:a:vercel:next.js:13.4.10
-
cpe:2.3:a:vercel:next.js:13.4.11
-
cpe:2.3:a:vercel:next.js:13.4.12
-
cpe:2.3:a:vercel:next.js:13.4.13
-
cpe:2.3:a:vercel:next.js:13.4.14
-
cpe:2.3:a:vercel:next.js:13.4.15
-
cpe:2.3:a:vercel:next.js:13.4.16
-
cpe:2.3:a:vercel:next.js:13.4.17
-
cpe:2.3:a:vercel:next.js:13.4.18
-
cpe:2.3:a:vercel:next.js:13.4.19
-
cpe:2.3:a:vercel:next.js:13.4.2
-
cpe:2.3:a:vercel:next.js:13.4.20
-
cpe:2.3:a:vercel:next.js:13.4.3
-
cpe:2.3:a:vercel:next.js:13.4.4
-
cpe:2.3:a:vercel:next.js:13.4.5
-
cpe:2.3:a:vercel:next.js:13.4.6
-
cpe:2.3:a:vercel:next.js:13.4.7
-
cpe:2.3:a:vercel:next.js:13.4.8
-
cpe:2.3:a:vercel:next.js:13.4.9