Skip to content

Comments

build(deps): Upgrade next.js to 15.2.3+ to fix CVE-2025-29927#16490

Open
chargome wants to merge 1 commit intomasterfrom
build/upgrade-next-15-2-3-security
Open

build(deps): Upgrade next.js to 15.2.3+ to fix CVE-2025-29927#16490
chargome wants to merge 1 commit intomasterfrom
build/upgrade-next-15-2-3-security

Conversation

@chargome
Copy link
Member

Bumps next from 15.1.12 to ^15.2.3 (resolves to 15.5.12) to patch a critical authorization bypass vulnerability in Next.js middleware (GHSA-f82v-jwr5-mffw / CVE-2025-29927, CVSS 9.1).

Bumps next from 15.1.12 to ^15.2.3 (resolves to 15.5.12) to patch
a critical authorization bypass vulnerability in Next.js middleware
(GHSA-f82v-jwr5-mffw / CVE-2025-29927, CVSS 9.1).

Co-Authored-By: Claude <noreply@anthropic.com>
@chargome chargome requested a review from sergical February 20, 2026 14:29
@chargome chargome self-assigned this Feb 20, 2026
@vercel
Copy link

vercel bot commented Feb 20, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
develop-docs Error Error Feb 20, 2026 2:35pm
sentry-docs Error Error Feb 20, 2026 2:35pm

Request Review

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant