更新: 109 个文件 - 2026-03-18 10:55:52
这个提交包含在:
@@ -1,90 +1,32 @@
|
||||
{
|
||||
"generated_at": "2026-03-18T14:45:55+00:00",
|
||||
"advisory_count": 5,
|
||||
"generated_at": "2026-03-18T17:52:49+00:00",
|
||||
"advisory_count": 0,
|
||||
"run_count": 140,
|
||||
"statuses": {
|
||||
"triage-manual": 5
|
||||
},
|
||||
"statuses": {},
|
||||
"run_statuses": {
|
||||
"verified-real": 136,
|
||||
"blocked-artifact": 3,
|
||||
"triage-manual": 1
|
||||
},
|
||||
"recent_failures": [
|
||||
{
|
||||
"run_id": null,
|
||||
"advisory_id": "nextjs--CVE-2026-27979",
|
||||
"status": "triage-manual",
|
||||
"title": "Next.js: Unbounded postponed resume buffering can lead to DoS",
|
||||
"blocked_reason": null
|
||||
},
|
||||
{
|
||||
"run_id": null,
|
||||
"advisory_id": "nextjs--CVE-2026-27980",
|
||||
"status": "triage-manual",
|
||||
"title": "Next.js: Unbounded next/image disk cache growth can exhaust storage",
|
||||
"blocked_reason": null
|
||||
},
|
||||
{
|
||||
"run_id": null,
|
||||
"advisory_id": "nextjs--CVE-2026-29057",
|
||||
"status": "triage-manual",
|
||||
"title": "Next.js: HTTP request smuggling in rewrites",
|
||||
"blocked_reason": null
|
||||
},
|
||||
{
|
||||
"run_id": null,
|
||||
"advisory_id": "nextjs--CVE-2026-27978",
|
||||
"status": "triage-manual",
|
||||
"title": "Next.js: null origin can bypass Server Actions CSRF checks",
|
||||
"blocked_reason": null
|
||||
},
|
||||
{
|
||||
"run_id": null,
|
||||
"advisory_id": "nextjs--CVE-2026-27977",
|
||||
"status": "triage-manual",
|
||||
"title": "Next.js: null origin can bypass dev HMR websocket CSRF checks",
|
||||
"blocked_reason": null
|
||||
}
|
||||
],
|
||||
"systems": [
|
||||
{
|
||||
"system_id": "nextjs",
|
||||
"display_name": "Next.js",
|
||||
"total": 5,
|
||||
"verified_real": 0,
|
||||
"verified_synthetic": 0,
|
||||
"blocked": 0,
|
||||
"manual": 5,
|
||||
"browser_required": 0,
|
||||
"browser_present": 0,
|
||||
"latest_update": "2026-03-17T16:31:34.160932Z",
|
||||
"category": "frameworks",
|
||||
"tier": "history-full",
|
||||
"output_dir": "07-framework-security/frameworks/nextjs",
|
||||
"families": [
|
||||
{
|
||||
"family": "proxy-boundary",
|
||||
"total": 4,
|
||||
"verified_real": 0,
|
||||
"manual": 4
|
||||
},
|
||||
{
|
||||
"family": "request-smuggling",
|
||||
"total": 1,
|
||||
"verified_real": 0,
|
||||
"manual": 1
|
||||
}
|
||||
]
|
||||
}
|
||||
],
|
||||
"recent_failures": [],
|
||||
"monitoring": {
|
||||
"active_source_count": 110,
|
||||
"green_source_count": 110,
|
||||
"source_failure_count": 0,
|
||||
"open_alert_count": 0,
|
||||
"last_fully_green_run": "2026-03-18T17:44:31+00:00"
|
||||
},
|
||||
"systems": [],
|
||||
"completeness": {
|
||||
"advisory_total": 5,
|
||||
"advisory_total": 0,
|
||||
"verified_real": 0,
|
||||
"verified_synthetic": 0,
|
||||
"blocked": 0,
|
||||
"manual": 5,
|
||||
"manual": 0,
|
||||
"verified_ratio": 0.0,
|
||||
"complete": false
|
||||
"complete": false,
|
||||
"source_failure_count": 0,
|
||||
"active_source_count": 110,
|
||||
"open_alert_count": 0
|
||||
}
|
||||
}
|
||||
|
||||
在新工单中引用
屏蔽一个用户