Impact : It is possible to bypass authorization checks within a Next.js application, if the authorization check occurs in middleware. CVE-ID : CVE-2025-29927 Weakness : CWE-285 ( Improper Authorization ) Credits : - Allam Rachid (zhero;) - Allam Yasser (inzo_)
@Gospel
1 grabs
No comments yet
Say something. You’re first.