A newly disclosed vulnerability in the Next.js React framework has been assigned a CVSS score of 9.1, marking it as a critical security risk. Tracked as CVE-2025-29927, the flaw can be exploited under specific conditions to bypass middleware-based authorization checks,…
First seen on sensorstechforum.com
Jump to article: sensorstechforum.com/cve-2025-29927-nextjs-flaw/