logo

Critical Middleware Vulnerability in Next.js (CVE-2025-29927) | UpGuard

ID: 2672bb1a-68c9-544d-9803-9a8c786bb895

STIX ID: report--2672bb1a-68c9-544d-9803-9a8c786bb895

Feed Name: UpGuard Blog

Threat Score
80/100

Date Published: 2025-07-26

Date Updated: 2026-05-01

...
...

**CVE-2025-29927 (CVSS 9.1)**: A critical Next.js vulnerability enables authorization middleware bypass via a crafted `x-middleware-subrequest` header in self-hosted Next.js 11.1.4–15.2.2 when run with `next start` and `standalone` output; upgrade to patched releases (15.2.3, 14.2.25, 13.5.9, 12.3.5), or mitigate by removing the header at proxies and adding server-side authorization checks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.