Denial of Service Condition in Next.js Framework
CVE-2024-39693
7.5HIGH
What is CVE-2024-39693?
A critical Denial of Service (DoS) vulnerability has been identified in Next.js, a widely-used React framework. This bug can lead to a server crash, severely affecting the availability and performance of applications built using this framework. The vulnerability was addressed in Next.js version 13.5 and later. Users are strongly advised to update to the latest version to mitigate the risks associated with this vulnerability. For further details, please refer to the advisory on the Vercel GitHub page.
Affected Version(s)
next.js >= 13.3.1, < 13.5.0