Menu

Protection against Next.js CVE-2025-29927 - Vercel
📰
0

Protection against Next.js CVE-2025-29927 - Vercel

Vercel News·Aaron Brown·4 days ago
#RiYb9buA
Reading 0:00
15s threshold

A security vulnerability in Next.js was responsibly disclosed , which allows malicious actors to bypass authorization in Middleware when targeting the x-middleware-subrequest header. Vercel customers are not affected .…

Anonymous readers can preview up to 1024 characters here. Log in to unlock the full article once ingest succeeds.
Read More