Next Js Open Source Framework Affected By Critical Security Vulnerability
According to Cyberscoop, Allam Yasser and Allam Rachid, cybersecurity researchers, spotted the vulnerability on February 27 and reported it to Vercel, the cloud company that created and maintains Next.js. Cybersecurity researchers Allam Yasser and Allam Rachid unveiled a vulnerability in the popular framework Next.js The flaw, identified as CVE-2025-29927, allowed malicious actors to bypass authorization in middleware. Vercel took action and shared patches for all affected versions and updates a few days later....