Six New High Severity CVEs for Next.js and 1 for React

(github.com)

4 points | by tkel 12 hours ago ago

2 comments

  • austin-cheney 10 hours ago

    I suspect these CVEs will be 100% ignored irrespective of their severity. I wrote JavaScript for employment for over 15 years.

    Frameworks only exist for the employer to supplement hiring and for those developers that are reliant upon them their availability is the only thing that matters.

  • tkel 12 hours ago

    12 total for Next.js

    Here's the 1 for React: https://github.com/facebook/react/security/advisories/GHSA-r...