Urgent: High-Severity Next.js Flaw Lets Hackers Bypass Critical Authorization Checks
Critical vulnerability (CVE-2025-29927) discovered in Next.js allows attackers to bypass authorization checks by exploiting the "x-middleware-subrequest" header, potentially granting unauthorized access to protected routes. With a CVSS score of 9.1, this flaw enables attackers to skip midd...
