Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-3080 | next-forge is a Next.js project boilerplate for modern web application. The BASEHUB_TOKEN commited in apps/web/.env.example. Users should avoid use of this token and should remove any access it may have in their systems. |
Mon, 13 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 13 Jan 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | next-forge is a Next.js project boilerplate for modern web application. The BASEHUB_TOKEN commited in apps/web/.env.example. Users should avoid use of this token and should remove any access it may have in their systems. | |
| Title | BASEHUB_TOKEN commited in next-forge | |
| Weaknesses | CWE-312 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-13T20:07:51.314Z
Reserved: 2025-01-10T15:11:08.881Z
Link: CVE-2025-23027
Updated: 2025-01-13T20:07:46.209Z
Status : Deferred
Published: 2025-01-13T20:15:30.150
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-23027
No data.
OpenCVE Enrichment
No data.
EUVD