Skip to content
Discussion options

You must be logged in to vote

Yes, You’re using an affected version, and it includes several other vulnerabilities. You can check all of them by running npm audit.
You should also update your React version.
Upgrade Next.js to 15.0.5 and both react and react-dom to 19.0.1 for a safer setup.

Here are all the vulnerabilities currently affecting your packages:

Next.js – Denial of Service (DoS) via Server Actions
GHSA-7m27-7ghc-44w9

Information Exposure in Next.js Dev Server (Missing Origin Verification)
GHSA-3h52-269p-cp9r

Cache Key Confusion in Next.js Image Optimization API Routes
GHSA-g5qg-72qw-gw5v

Content Injection Vulnerability in Next.js Image Optimization
GHSA-xv57-4mr9-wg8v

Improper Middleware Redirect Handling L…

Replies: 2 comments 3 replies

Comment options

You must be logged in to vote
1 reply
@typenoob
Comment options

Answer selected by typenoob
Comment options

You must be logged in to vote
2 replies
@icyJoseph
Comment options

@typenoob
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Help
Labels
None yet
4 participants