next
210 known vulnerabilities · 2 critical · 10 high
Next.js Affected by Cache Key Confusion for Image Optimization API Routes
Next.js has a Denial of Service with Server Components
Next.js has cross site scripting (XSS) vulnerability via the 404 or 500 /_error page
Next.js: Unbounded next/image disk cache growth can exhaust storage
Next.js self-hosted applications vulnerable to DoS via Image Optimizer remotePatterns configuration
Next.js missing cache-control header may lead to CDN caching empty reply
Next.js has a Cache poisoning vulnerability due to omission of the Vary header
Next.js has a Middleware / Proxy bypass in Pages Router applications using i18n
Next.js has a Middleware / Proxy bypass in App Router applications via segment-prefetch routes
Next.js has a Middleware / Proxy bypass through dynamic route parameter injection
Improper CSP in Image Optimization API for Next.js versions between 10.0.0 and 12.1.0
Next.js Vulnerable to Denial of Service with Server Components
Next.js vulnerable to server-side request forgery in applications using WebSocket upgrades
Next.js has cross-site scripting in beforeInteractive scripts with untrusted input
Next.js has a Denial of Service in the Image Optimization API
Next.js vulnerable to Denial of Service via connection exhaustion in applications using Cache Components
Next.js is vulnerable to RCE in React flight protocol
Next.js HTTP request deserialization can lead to DoS when using insecure React Server Components
Next.js vulnerable to cache poisoning in React Server Component responses
Next Server Actions Source Code Exposure
Next.js has a Middleware / Proxy bypass in App Router applications via segment-prefetch routes - Incomplete Fix Follow-Up
Next Vulnerable to Denial of Service with Server Components
Next.js has Unbounded Memory Consumption via PPR Resume Endpoint
Next.js's Middleware / Proxy redirects can be cache-poisoned
Next.js vulnerable to cross-site scripting in App Router applications using CSP nonces
Next.js vulnerable to cache poisoning via collisions in React Server Component cache-busting
Next has a Denial of Service with Server Components - Incomplete Fix Follow-Up
next-intl has prototype pollution with `experimental.messages.precompile` via attacker-controlled translation catalog keys
Malicious code in pos-next-react-native (npm)
Malicious code in nextcloud-js-tests (npm)
NextAuthjs Email misdelivery Vulnerability
Withdrawn Advisory: LikeC4 has RCE through vulnerable React and Next.js versions
Duplicate Advisory: OpenClaw's Nextcloud Talk webhook missing rate limiting on shared secret authentication
Malicious code in nextjs-accelerator (npm)
@mobilenext/mobile-mcp alllows arbitrary file write via Path Traversal in mobile screen capture tools
Malicious code in next-auths (npm)
Malicious code in next-rwa (npm)
Malicious code in next-logging-patcher (npm)
tRPC has possible prototype pollution in `experimental_nextAppDirCaller`
Malicious code in @nexthink/apollo-tokens (npm)
Malicious code in @nexthink/arm-jwt-decoder (npm)
Malicious code in private-next-instrumentation-client (npm)
Malicious code in @nexthink/apollo-components (npm)
Malicious code in @nexthink/waas (npm)
Malicious code in cscchokidar-next (npm)
Malicious code in next-10-local (npm)
next-intl has an open redirect vulnerability
Duplicate Advisory: OpenClaw's Nextcloud Talk webhook replay could trigger duplicate inbound processing
Malicious code in kratos-nextjs-react-example (npm)
Malicious code in @nexthink/investigations-components (npm)
OpenClaw's Nextcloud Talk webhook missing rate limiting on shared secret authentication
Malicious code in next-with-frontegg (npm)
Malicious code in next-plugin-normal (npm)
Malicious code in nextcloud-activity (npm)
Malicious code in @nexthink/kendo-react (npm)
Malicious code in @nexthink/nql-editor (npm)
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in @nextcloud/dialogs
Duplicate Advisory: OpenClaw: Nextcloud Talk room allowlist matched colliding room names instead of stable room tokens
@mobilenext/mobile-mcp: Arbitrary Android Intent Execution via mobile_open_url
NextAuth.js default redirect callback vulnerable to open redirects
Malicious code in cschokidar-next (npm)
next-auth before v4.10.2 and v3.29.9 leaks excessive information into log
Malicious code in nextcloud1 (npm)
Malicious code in vite-next-loggers (npm)
Electerm has an unvalidated shell.openExternal that allows arbitrary protocol execution via terminal link click
Malicious code in react-resource-router-next (npm)
opennextjs-cloudflare has SSRF vulnerability via /cdn-cgi/ path normalization bypass
Malicious code in vscode-typescript-next (npm)
Malicious code in webpack-next (npm)
Malicious code in next-pwa-template (npm)
URL Redirection to Untrusted Site ('Open Redirect') in next-auth
Malicious code in @nationalgeographicsociety/ngsui-header-auth-provider-next (npm)
Malicious code in nextiva-dot-com (npm)
NextChat has full-read SSRF and XSS vulnerability in /api/cors endpoint
Malicious code in next-auth-core (npm)
Malicious code in h3-next (npm)
Malicious code in @nexthink/ea-widgets (npm)
Malicious code in @nexthink/nxassignment (npm)
Malicious code in app-bridge-next (npm)
Postiz App has a High-Severity SSRF Vulnerability via Next.js
@payloadcms/next has Stored XSS in Admin Panel
Malicious code in next-id-doc (npm)
Malicious code in next-refresh-token (npm)
Malicious code in gbiz-next (npm)
@apollo/experimental-nextjs-app-support Cross-site Scripting vulnerability
Malicious code in @nexthink/apollo-widgets (npm)
Malicious code in node-env-resolver-nextjs (npm)
Malicious code in next-tab (npm)
Malicious code in react-monorail-next (npm)
Malicious code in next-log-patcher (npm)
Malicious code in frontend-vue-next (npm)
Malicious code in waffles-next-doc-site (npm)
i18next-http-middleware has path traversal / SSRF via user-controlled language and namespace parameters
Malicious code in lexical-esm-nextjs (npm)
next-mdx-remote affected by arbitrary code execution in React server-side rendering of untrusted MDX content
OpenClaw's Nextcloud Talk webhook replay could trigger duplicate inbound processing
Malicious code in wix-smarts-nextjs (npm)
Malicious code in @nexthink/engage-branding (npm)
Malicious code in nextjs-app-router (npm)
OpenNext for Cloudflare (opennextjs-cloudflare) has a SSRF vulnerability via /_next/image endpoint
Malicious code in nextjs-insight (npm)
Malicious code in @ensdomains/vite-plugin-i18next-loader (npm)
Malicious code in next-simple-google-analytics (npm)
Malicious code in next-styled-nprogress (npm)
Malicious code in nextcloud-cookbook (npm)
Malicious code in @nexthink/content-sharing (npm)
Malicious code in example-app-next (npm)
Malicious code in @nexthink/flow-fe (npm)
Malicious code in @nexthink/investigations-editor (npm)
Malicious code in @nexthink/nxnavigation (npm)
Malicious code in @asura21232/fca-unofficial-nextgen (npm)
Malicious code in @nexthink/arm-claims-library (npm)
Malicious code in @nexthink/content-admin-list (npm)
Malicious code in @nexthink/data-formatter (npm)
Malicious code in @nexthink/remote-action-widgets (npm)
Malicious code in nextcloud-news (npm)
Malicious code in vinext-monorepo (npm)
Malicious code in arnext (npm)
Malicious code in arnext-arkb (npm)
Malicious code in @investnext/fetlife-assets (npm)
Malicious code in nextmove-mcp (npm)
Malicious code in create-arnext-app (npm)
Malicious code in nextcapital-client-demo (npm)
Malicious code in atomic-next (npm)
Malicious code in next-sweetalert2 (npm)
Malicious code in theme-next (npm)
Malicious code in csbchalk-next (npm)
Malicious code in @kucoin-gbiz-next/tools (npm)
Malicious code in nextjs-chat-with-ai-service (npm)
Malicious code in @posthog/nextjs (npm)
Malicious code in @posthog/nextjs-config (npm)
Malicious code in polaris-example-nextjs (npm)
Malicious code in polaris-next (npm)
Malicious code in next.js-localized (npm)
Malicious code in prettier-plugin-kimi-i18next (npm)
Malicious code in ssc-ui-react-next (npm)
Malicious code in react-intl-next (npm)
Malicious code in react-redux-next (npm)
Malicious code in lucide-next (npm)
Malicious code in react-table-next (npm)
Malicious code in @helloflex/widget-next-sdk (npm)
Malicious code in nextiva-partners-microsite (npm)
Malicious code in react-pro-components-next (npm)
OpenClaw: Nextcloud Talk room allowlist matched colliding room names instead of stable room tokens
Malicious code in nextcloud2 (npm)
Malicious code in @seung-ju/next (npm)
Malicious code in @webapp-next/store (npm)
Malicious code in nextmvc3primary (npm)
Malicious code in eslint-disable-next-line (npm)
i18next-http-middleware: Prototype pollution and path traversal via user-controlled language and namespace parameters
i18nextify has DOM XSS via javascript:/data: URL schemes in translated href/src attributes
Malicious code in csachalk-next (npm)
i18next-fs-backend: Path traversal via unsanitised lng/ns allows arbitrary file read/overwrite
i18next-http-middleware: HTTP response splitting and DoS via unsanitised Content-Language header
Malicious code in actions-next-bundle-analyzer (npm)
i18next-http-backend has Path Traversal & URL Injection via Unsanitised lng/ns
Auth0 Next.js SDK has Improper Proxy Cache Lookup
Malicious code in next-config-log (npm)
Malicious code in winextracter (npm)
Malicious code in next2ejs (npm)
Malicious code in cschalk-next (npm)
i18next-locize-backend has URL Injection via Unsanitized Path Parameters
Malicious code in nextjs-edge (npm)
NextAuth.js before 4.10.3 and 3.29.10 sending verification requests (magic link) to unwanted emails
Malicious code in nextcloudappstore (npm)
Malicious code in private-next-pages (npm)
Malicious code in nextcloud-mail (npm)
Malicious code in postcsscksnext (npm)
Malicious code in sha256-validation-nextjs (npm)
Malicious code in @sev-ui-verse/i18next-config (npm)
Malicious code in browser-nextjs (npm)
Malicious code in achalk-next (npm)
next-npm-version is vulnerable to Command injection
Malicious code in @nexthink/engage-widgets (npm)
Malicious code in @nexthink/investigations-widgets (npm)
Malicious code in nextcloud-register (npm)
Malicious code in ng-focus-next (npm)
Shamefile has an arbitrary file read via shamefile.yaml in shame next
Malicious code in chokidar-next (npm)
Malicious code in assistants-nextjs (npm)
Malicious code in achokidar-next (npm)
Malicious code in kc-next (npm)
Malicious code in next-circular-dependency (npm)