@vercel/next
Supply chain provenance
Status for the latest visible version.
Maintainers
Accepted risks
Findings the reviewer chose to accept rather than block on.
| Source | Rule | Reason | Accepted by | When |
|---|---|---|---|---|
| typosquat | typosquat.levenshtein:nuxt | AI (typosquat): @vercel/next is the official Vercel Next.js runtime, not a typosquat of nuxt. | ai | |
| typosquat | typosquat.levenshtein:jest | AI (typosquat): Legitimate scoped Vercel package; no relation to jest. | ai | |
| typosquat | typosquat.levenshtein:knex | AI (typosquat): Legitimate scoped Vercel package; no relation to knex. | ai |
Versions (showing 51 of 94)
| Version | Deps | Published |
|---|---|---|
| 4.17.4 | 1 / 39 | |
| 4.17.3 | 1 / 39 | |
| 4.17.2 | 1 / 39 | |
| 4.17.1 | 1 / 39 | |
| 4.17.0 | 1 / 39 | |
| 4.16.8 | 1 / 39 | |
| 4.16.7 | 1 / 39 | |
| 4.16.6 | 1 / 39 | |
| 4.16.5 | 1 / 39 | |
| 4.16.4 | 1 / 39 | |
| 4.16.3 | 1 / 39 | |
| 4.16.2 | 1 / 39 | |
| 4.16.1 | 1 / 39 | |
| 4.16.0 | 1 / 39 | |
| 4.15.42 | 1 / 39 | |
| 4.15.41 | 1 / 39 | |
| 4.15.40 | 1 / 39 | |
| 4.15.39 | 1 / 39 | |
| 4.15.38 | 1 / 39 | |
| 4.15.37 | 1 / 39 | |
| 4.15.36 | 1 / 39 | |
| 4.15.35 | 1 / 39 | |
| 4.15.34 | 1 / 39 | |
| 4.15.33 | 1 / 39 | |
| 4.15.32 | 1 / 39 | |
| 4.15.31 | 1 / 39 | |
| 4.15.30 | 1 / 39 | |
| 4.15.29 | 1 / 39 | |
| 4.15.28 | 1 / 39 | |
| 4.15.27 | 1 / 39 | |
| 4.15.26 | 1 / 39 | |
| 4.15.25 | 1 / 39 | |
| 4.15.24 | 1 / 39 | |
| 4.15.23 | 1 / 39 | |
| 4.15.22 | 1 / 39 | |
| 4.15.21 | 1 / 39 | |
| 4.15.20 | 1 / 39 | |
| 4.15.19 | 1 / 39 | |
| 4.15.18 | 1 / 39 | |
| 4.15.17 | 1 / 39 | |
| 4.15.16 | 1 / 39 | |
| 4.15.15 | 1 / 38 | |
| 4.15.14 | 1 / 38 | |
| 4.15.13 | 1 / 38 | |
| 4.15.12 | 1 / 38 | |
| 4.15.11 | 1 / 38 | |
| 4.15.10 | 1 / 38 | |
| 4.15.9 | 1 / 38 | |
| 4.15.8 | 1 / 38 | |
| 4.15.7 | 1 / 38 | |
| 4.15.6 | 1 / 38 |
v4.17.4
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.17.3
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.17.2
1 findingPublished via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.17.1
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.17.0
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.8
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.7
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.6
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.5
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.4
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.3
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.2
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.1
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.16.0
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.42
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.41
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.40
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.39
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.38
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.37
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.36
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.35
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.34
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.33
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.32
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.31
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.30
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.29
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.28
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.27
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.26
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.25
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.24
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.23
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.22
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.21
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.20
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.19
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.18
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.17
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.16
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.15
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.14
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.13
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.12
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.11
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.10
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.9
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.8
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.7
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.
v4.15.6
2 findingsPackage name '@vercel/next' is 1 edit(s) away from popular package 'nuxt'.
Published via CI/CD with Sigstore attestation (predicate: https://slsa.dev/provenance/v1). This is the strongest supply chain integrity signal.