We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 13aa40b commit 354b815Copy full SHA for 354b815
http/cves/2025/CVE-2025-29927.yaml
@@ -2,7 +2,7 @@ id: CVE-2025-29927
2
3
info:
4
name: Next.js Middleware Bypass
5
- author: pdresearch,pdteam
+ author: pdresearch,pdteam,hazedic
6
severity: critical
7
description: |
8
Next.js contains a critical middleware bypass vulnerability affecting versions 11.1.4 through 15.2.2.
@@ -109,4 +109,4 @@ http:
109
- type: dsl
110
dsl:
111
- status_code == 200
112
-# digest: 4a0a00473045022000c74ecd0ff9c0933e25df07aa201a1fdbecd54d8d142afb75d5ddb25082a46a02210081b0439aacf5dac9e6770499bc9fd4a861411699ff25c9ed0afbfd75d0c35046:922c64590222798bb761d5b6d8e72950
+# digest: 4a0a00473045022000c74ecd0ff9c0933e25df07aa201a1fdbecd54d8d142afb75d5ddb25082a46a02210081b0439aacf5dac9e6770499bc9fd4a861411699ff25c9ed0afbfd75d0c35046:922c64590222798bb761d5b6d8e72950
0 commit comments