Menu

Protection against React Router and Remix vulnerabilities - Vercel
📰
0

Protection against React Router and Remix vulnerabilities - Vercel

Vercel News·Casey Gowrie·4 days ago
#fAF54zud
#vercel#react#router#cache#remix#article
Reading 0:00
15s threshold

Security researchers reviewing the Remix web framework have discovered two high-severity vulnerabilities in React Router. Vercel proactively deployed mitigation to the Vercel Firewall and Vercel customers are protected . CVE-2025-43864 and CVE-2025-43865 enable an external party to modify the response using certain request headers, which can lead to cache poisoning Denial of Service (DoS). CVE 43865 enables vulnerabilities such as stored Cross Site Scripting (XSS). Link to heading Impact and analysis When we learned about the vulnerability, we started analyzing the impact to the Vercel platform.…

Continue reading — create a free account

Join HashtagPLUS to read full articles, follow hashtags, vote, and join the conversation.

Read More