vendor
vercel
Severity
Its products
Being told
The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.
Every thing
| next: Next.js: Information disclosure via cache key omission in nested cache handlers CVE-2026-103004 | Severity medium |
| next: Next.js: Information disclosure via shared cache fills in Draft Mode CVE-2026-94544 | Severity medium |
| next: Next.js: Response cache poisoning via improper route binding CVE-2026-94543 | Severity medium |
| next: Next.js: Information disclosure via unrestricted cross-site requests CVE-2026-94486 | Severity medium |
| next: Next.js: Information disclosure via unrestricted cross-site requests on development server CVE-2026-94485 | Severity medium |
| next: Next.js: Denial of Service via response cache poisoning CVE-2026-94484 | Severity medium |
| next: Next.js: Information disclosure via SSRF in Image Optimization CVE-2026-94483 | Severity medium |