The React Framework
97%
Total Score
100
83
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-553733 New next is vulnerable to Remote Code Execution (RCE) in versions 10.0.0 - 15.5.23 and 16.0.0 - 16.3.2. | 10.0.0 - 15.5.2316.0.0 - 16.3.2 | Critical |
AIKIDO-2026-228418 New next is vulnerable to Remote Code Execution (RCE) in versions 13.4.0 - 15.5.23 and 16.0.0 - 16.3.2. | 13.4.0 - 15.5.2316.0.0 - 16.3.2 | Critical |
AIKIDO-2026-283297 next is vulnerable to Server-Side Request Forgery (SSRF) in versions 14.1.1 - 15.5.20 and 16.0.0 - 16.2.10. | 14.1.1 - 15.5.2016.0.0 - 16.2.10 | High |
AIKIDO-2026-165691 next is vulnerable to Denial of Service (DoS) in versions 13.0.0 - 15.5.20 and 16.0.0 - 16.2.10. | 13.0.0 - 15.5.2016.0.0 - 16.2.10 | Medium |
AIKIDO-2026-573829 next is vulnerable to Server-Side Request Forgery (SSRF) in versions 12.0.0 - 15.5.20 and 16.0.0 - 16.2.10. | 12.0.0 - 15.5.2016.0.0 - 16.2.10 | High |
| Dependency | Last Release | Score |
|---|---|---|
postcss Version 8.5.23 | — | — |
@next/env Version 16.3.4 | — | — |
styled-jsx Version 5.1.6 | — | — |
@swc/helpers Version 0.5.23 | — | — |
caniuse-lite Version ^1.0.30001579 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant