Critical Next.js Middleware Vulnerability Allows Attackers to Bypass Authorization

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

Critical Next.js Middleware Vulnerability Allows Attackers to Bypass Authorization

Post by Shane1145 »

A severe vulnerability has been identified in Next.js, a popular React framework used for building web applications, under the designation CVE-2025-29927.

This critical flaw allows attackers to bypass security controls implemented by middleware, posing significant risks to authentication, authorization, and security header implementations, as per a report by Zeropath.




https://gbhackers.com/critical-next-js- ... erability/
Post Reply