GITHUBEXPLOIT 9.1 CRITICAL

Exploit for Incorrect Authorization in Vercel Next.Js_C1CCFFF3-2CB0-5007-ACAB-0173D4F36B96

9.1 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Description

CVE-2025-29927 Lab Minimal reproduction lab for CVE-2025-29927 — Next.js middleware authorization bypass CVSS 9.1. Companion to: N-Day Analysis writeup on Medium What this is A Next.js 15.2.2 app vulnerable with a cookie-gated /dashboard route. The...
Visit Original Source

Basic Information

ID C1CCFFF3-2CB0-5007-ACAB-0173D4F36B96
Published Jun 10, 2026 at 06:50

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.