Heroku Env Project provides a utility for managing environment variables within the Heroku application platform, occupying a narrow and specialized role in deployment workflows. Live severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Heroku Env Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-28437CRITICAL This affects all versions of package heroku-env. The injection point is located in lib/get.js which is required by index.js. | Aug 2, 2022 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Heroku Env Project.
Media articles that mention a CVE ID that affects a product developed by Heroku Env Project — matched by CVE ID, not by vendor name.