Six New High Severity CVEs for Next.js and 1 for React

(github.com)

4 points | by tkel 12 hours ago ago

2 comments

  • austin-cheney 11 hours ago ago

    I suspect these CVEs will be 100% ignored irrespective of their severity. I wrote JavaScript for employment for over 15 years.

    Frameworks only exist for the employer to supplement hiring and for those developers that are reliant upon them their availability is the only thing that matters.

  • tkel 12 hours ago ago

    12 total for Next.js

    Here's the 1 for React: https://github.com/facebook/react/security/advisories/GHSA-r...