Skip to content

fix: upgrade Next.js to 15.4.10 to patch CVE-2025-55184 and CVE-2025-55183#7

Merged
dcbouius merged 1 commit into
mainfrom
fix-CVE-2025-55184
May 13, 2026
Merged

fix: upgrade Next.js to 15.4.10 to patch CVE-2025-55184 and CVE-2025-55183#7
dcbouius merged 1 commit into
mainfrom
fix-CVE-2025-55184

Conversation

@dcbouius
Copy link
Copy Markdown
Contributor

Summary

Security Impact

  • CVE-2025-55184 (High) - Denial of Service via malicious HTTP request to App Router endpoints
  • CVE-2025-55183 (Medium) - Source Code Exposure of Server Actions

Reference

https://github.com/vercel/next.js/security/advisories

@dcbouius dcbouius merged commit 23d27b2 into main May 13, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant