Výsledky hledání

výrobce: Next.js× v celém archivu

Různé zkratky a hodnoty pod každou zprávou mají svoji legendu — pokud na údaji postojíte myší. Některé jsou klikatelné. Typicky CVE.

zrušit filtry CZ · EN/orig

3 karet z 3 položek

1

August 2026 Security Release for Next.js

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.0, CVEs: CVE-2026-75604, Summary: Unauthenticated Remote Code Execution in the Image Optimization API when using AVIF (Critical Severity) GHSA-2xp9-vwfh-vxw4 / GHSA-g89c-p67h-r497 A vulnerability in the underlying libheif library used by sharp can lead to unauthenticated remote code execution when Next.js optimizes an attacker-controlled AVIF image. The patched releases disable AVIF optimization until…

CVSS 9.0 CVE-2026-75604 Vercel Next.js FI RO NL 3 zdrojů

NCSC-FI · DNSC Rumunsko · NCSC-NL

1

Next.js security advisory (AV26-851)

Serial Number: AV26-851Date: August 26, 2026 As of August 25, 2026, Next.js is affected by critical vulnerabilities in the following product: js Version 15.5 prior to 15.5.24 Version 16.3 prior to 16.3.3 The Cyber Centre encourages users and administrators to review the web link provided and apply any necessary updates as they become available. August 2026 Security Release

Next.js CA

Cyber Centre Kanada ·

1