Last updated: September 29, 2026 at 8:42 AM UTC
All 891 Vulnerability 357 Breach 144 Threat 383 Defense 7
Tag: nextjs (3 articles)Clear

Critical Next.js ImageResponse flaw enables server code execution through crafted SVG input

Vercel patched a critical flaw in Next.js ImageResponse, the feature that generates Open Graph and social preview images, that can let attackers run code on the server. Tracked as CVE-2026-94545 and rated 9.5, it affects Next.js 16.2.0 through 16.3.5 when ImageResponse runs on the default Node.js runtime, and is fixed in 16.3.6. The Edge runtime and Next.js 15 are not affected. ImageResponse uses the Satori library to convert layouts into SVG before rendering, and apps are exposed when they pass attacker-controlled values, such as text from a request URL, into SVG content, attributes, or styles. As of disclosure there were no public exploits or reports of attacks.

Check
Search code for ImageResponse imported from next/og in route handlers and opengraph-image files, then upgrade affected apps to Next.js 16.3.6.
Affected
Next.js apps on 16.2.0 through 16.3.5 using Node runtime ImageResponse with attacker-controlled values in generated SVG can be driven to server code execution.
Fix
Update to Next.js 16.3.6, avoid placing request-derived values into image content, and consider the Edge runtime where feasible for image generation.

Next.js patches two critical flaws enabling unauthenticated remote code execution

Vercel patched two critical unauthenticated remote code execution flaws in Next.js, the popular React framework that sees tens of millions of downloads a week. One stems from the upstream libheif library used for image processing and triggers when the framework optimizes an attacker-supplied AVIF image; the patched releases disable AVIF optimization until the upstream fix lands. The second, CVE-2026-75604, is a path traversal affecting Next.js servers running on a Windows filesystem in certain router configurations, with no workaround. Fixes are in versions 15.5.24 and 16.3.3, and applications hosted on Vercel are already protected. No exploitation had been reported at disclosure.

Check
Update Next.js to 15.5.24 or 16.3.3, rebuild production containers, and refresh dependency lockfiles, since the AVIF flaw comes through an upstream image library bundled in your build.
Affected
Self-hosted Next.js applications using image optimization or running on Windows filesystems (CVE-2026-75604 and the AVIF flaw); an unauthenticated attacker can achieve remote code execution, though Vercel-hosted apps are already protected.
Fix
Patch and rebuild, disable AVIF optimization until updated, review exposure of the image optimization API and public upload paths, and watch logs for traversal patterns and unusual AVIF processing on Windows-hosted instances.

766+ Next.js hosts breached in automated React2Shell credential theft campaign (CVE-2025-55182)

Cisco Talos uncovered a large-scale automated campaign by threat cluster UAT-10608 that exploits React2Shell - a CVSS 10.0 pre-auth RCE flaw in React Server Components used by Next.js. One crafted HTTP request is all it takes to get code execution, no credentials needed. The attackers scan with Shodan and Censys, breach Next.js apps, then deploy the NEXUS Listener framework to harvest database credentials, SSH keys, AWS tokens, Stripe API keys, Kubernetes secrets, and GitHub tokens at scale. At least 766 hosts across multiple cloud providers were compromised within 24 hours.

Check
Check if you run any Next.js applications using React Server Components, especially internet-facing deployments on AWS, GCP, or Azure.
Affected
React Server Components packages versions 19.0, 19.1.0, 19.1.1, and 19.2.0. Any Next.js application using the App Router with these React versions is vulnerable.
Fix
Update React Server Components to a patched version immediately. Rotate all credentials on any server running a vulnerable Next.js deployment - database passwords, SSH keys, AWS keys, Stripe keys, GitHub tokens. Enforce AWS IMDSv2 to prevent cloud metadata credential theft. Enable secret scanning in your repos. Monitor for outbound connections to NEXUS Listener C2 infrastructure.