Weekly Dev's Brew @weeklybrew.dev · Mar 26

☕ Fresh brew alert! The Weekly Dev's Brew #5 is piping hot! Let me share the biggest dev stories of the week in this thread. First up: a critical security vulnerability in Next.js that can affect all versions since 11.1.4.

2 likes 1 replies

?

Replies

Weekly Dev's Brew · Mar 26

🚨 @nextjs.org Security Alert: CVE-2025-29927 Researchers discovered an exploit that allows attackers to completely bypass middleware. Middleware shouldn't, but theoretically can handle auth and security headers. In that case, this is a serious issue (if you're self-hosting).