CVE-2025-29927
Authorization Bypass in Next.js Middleware
Basic Information
- CVE State
- PUBLISHED
- Reserved Date
- March 12, 2025
- Published Date
- March 21, 2025
- Last Updated
- April 08, 2025
- Vendor
- vercel
- Product
- next.js
- Description
- Next.js is a React framework for building full-stack web applications. Starting in version 1.11.4 and prior to versions 12.3.5, 13.5.9, 14.2.25, and 15.2.3, it is possible to bypass authorization checks within a Next.js application, if the authorization check occurs in middleware. If patching to a safe version is infeasible, it is recommend that you prevent external user requests which contain the x-middleware-subrequest header from reaching your Next.js application. This vulnerability is fixed in 12.3.5, 13.5.9, 14.2.25, and 15.2.3.
- Tags
- Exploitation
- none
- Automatable
- Yes
- Technical Impact
- total
- Proof of Concept Available
- Yes (added 2025-03-28 02:31:58 UTC) Source
CVSS Scores
CVSS v3.1
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
SSVC Information
Exploit Status
References
Known Exploited Vulnerability Information
| Source | Added Date |
|---|---|
| The Shadowserver (via CIRCL) | 2025-12-15 14:29:13 UTC |
Scanner Integrations
| Scanner | URL | Date Detected |
|---|---|---|
| Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2025-29927.yaml | 2025-04-25 00:00:00 UTC |
Potential Proof of Concepts
Warning: These PoCs have not been tested and could contain malware. Use at your own risk.
EQSTLab/CVE-2025-29927
Type: github • Created: 2025-04-25 08:51:52 UTC • Stars: 0
kh4sh3i/CVE-2025-29927
Type: github • Created: 2025-04-23 08:19:58 UTC • Stars: 0
pouriam23/Next.js-Middleware-Bypass-CVE-2025-29927-
Type: github • Created: 2025-04-21 12:50:09 UTC • Stars: 1
Grand-Moomin/Vuln-Next.js-CVE-2025-29927
Type: github • Created: 2025-04-18 00:47:47 UTC • Stars: 0
enochgitgamefied/NextJS-CVE-2025-29927
Type: github • Created: 2025-04-16 22:39:55 UTC • Stars: 0
mhamzakhattak/CVE-2025-29927
Type: github • Created: 2025-04-16 10:28:16 UTC • Stars: 0
Knotsecurity/CVE-2025-29927-NextJs-Middleware-Simulation
Type: github • Created: 2025-04-16 07:33:54 UTC • Stars: 0
UNICORDev/exploit-CVE-2025-29927
Type: github • Created: 2025-04-14 15:12:13 UTC • Stars: 3
ethanol1310/POC-CVE-2025-29927-
Type: github • Created: 2025-04-13 08:23:11 UTC • Stars: 0
darklotuskdb/nextjs-CVE-2025-29927-hunter
Type: github • Created: 2025-04-11 20:42:09 UTC • Stars: 1
pickovven/vulnerable-nextjs-14-CVE-2025-29927
Type: github • Created: 2025-04-08 23:25:24 UTC • Stars: 0
goncalocsousa1/CVE-2025-29927
Type: github • Created: 2025-04-08 09:29:48 UTC • Stars: 1
gotr00t0day/CVE-2025-29927
Type: github • Created: 2025-04-06 20:59:10 UTC • Stars: 2
sn1p3rt3s7/NextJS_CVE-2025-29927
Type: github • Created: 2025-04-04 12:50:43 UTC • Stars: 0
Naveen-005/Next.Js-middleware-bypass-vulnerability-CVE-2025-29927
Type: github • Created: 2025-04-02 05:19:35 UTC • Stars: 0
nyctophile0969/CVE-2025-29927
Type: github • Created: 2025-04-01 19:23:52 UTC • Stars: 0
BilalGns/CVE-2025-29927
Type: github • Created: 2025-04-01 19:11:30 UTC • Stars: 0
alastair66/CVE-2025-29927
Type: github • Created: 2025-04-01 15:30:21 UTC • Stars: 0
Kamal-418/Vulnerable-Lab-NextJS-CVE-2025-29927
Type: github • Created: 2025-03-30 12:24:15 UTC • Stars: 1
ayato-shitomi/WebLab_CVE-2025-29927
Type: github • Created: 2025-03-30 03:52:42 UTC • Stars: 0
dante01yoon/CVE-2025-29927
Type: github • Created: 2025-03-29 08:49:38 UTC • Stars: 0
ferpalma21/Automated-Next.js-Security-Scanner-for-CVE-2025-29927
Type: github • Created: 2025-03-29 04:13:06 UTC • Stars: 1
w2hcorp/CVE-2025-29927-PoC
Type: github • Created: 2025-03-29 02:12:22 UTC • Stars: 1
yuzu-juice/CVE-2025-29927_demo
Type: github • Created: 2025-03-28 02:31:58 UTC • Stars: 0
nocomp/CVE-2025-29927-scanner
Type: github • Created: 2025-03-27 14:11:09 UTC • Stars: 0
KaztoRay/CVE-2025-29927-Research
Type: github • Created: 2025-03-27 12:50:38 UTC • Stars: 8
m2hcz/m2hcz-Next.js-security-flaw-CVE-2025-29927---PoC-exploit
Type: github • Created: 2025-03-27 11:48:35 UTC • Stars: 0
Heimd411/CVE-2025-29927-PoC
Type: github • Created: 2025-03-27 10:06:07 UTC • Stars: 0
Nekicj/CVE-2025-29927-exploit
Type: github • Created: 2025-03-27 08:42:03 UTC • Stars: 1
aleongx/CVE-2025-29927_Scanner
Type: github • Created: 2025-03-27 07:41:26 UTC • Stars: 0
aleongx/CVE-2025-29927
Type: github • Created: 2025-03-26 19:08:14 UTC • Stars: 0
w3shinew/CVE-2025-29927
Type: github • Created: 2025-03-26 16:24:15 UTC • Stars: 0
Slvignesh05/CVE-2025-29927
Type: github • Created: 2025-03-26 16:24:15 UTC • Stars: 0
emadshanab/CVE-2025-29927
Type: github • Created: 2025-03-26 07:56:23 UTC • Stars: 0
maronnjapan/claude-create-CVE-2025-29927
Type: github • Created: 2025-03-25 22:36:14 UTC • Stars: 0
c0dejump/CVE-2025-29927-check
Type: github • Created: 2025-03-25 18:02:18 UTC • Stars: 3
TheresAFewConors/CVE-2025-29927-Testing
Type: github • Created: 2025-03-25 11:39:14 UTC • Stars: 0
alihussainzada/CVE-2025-29927-PoC
Type: github • Created: 2025-03-25 10:30:55 UTC • Stars: 0
0xPb1/Next.js-CVE-2025-29927
Type: github • Created: 2025-03-25 07:15:36 UTC • Stars: 0
furmak331/CVE-2025-29927
Type: github • Created: 2025-03-25 02:20:36 UTC • Stars: 0
elshaheedy/CVE-2025-29927-Sigma-Rule
Type: github • Created: 2025-03-24 23:13:43 UTC • Stars: 0
0xWhoknows/CVE-2025-29927
Type: github • Created: 2025-03-24 19:18:20 UTC • Stars: 3
ricsirigu/CVE-2025-29927
Type: github • Created: 2025-03-24 19:13:35 UTC • Stars: 0
kuzushiki/CVE-2025-29927-test
Type: github • Created: 2025-03-24 16:27:17 UTC • Stars: 1
lem0n817/CVE-2025-29927
Type: github • Created: 2025-03-24 15:25:22 UTC • Stars: 1
Oyst3r1ng/CVE-2025-29927
Type: github • Created: 2025-03-24 13:27:13 UTC • Stars: 2
arvion-agent/next-CVE-2025-29927
Type: github • Created: 2025-03-24 13:23:46 UTC • Stars: 2
Eve-SatOrU/POC-CVE-2025-29927
Type: github • Created: 2025-03-24 11:42:14 UTC • Stars: 3
iSee857/CVE-2025-29927
Type: github • Created: 2025-03-24 09:27:03 UTC • Stars: 0
RoyCampos/CVE-2025-29927
Type: github • Created: 2025-03-24 05:07:02 UTC • Stars: 4
MuhammadWaseem29/CVE-2025-29927-POC
Type: github • Created: 2025-03-23 21:42:09 UTC • Stars: 9
websecnl/CVE-2025-29927-PoC-Exploit
Type: github • Created: 2025-03-23 19:41:05 UTC • Stars: 8
ticofookfook/poc-nextjs-CVE-2025-29927
Type: github • Created: 2025-03-23 16:04:50 UTC • Stars: 0
aydinnyunus/CVE-2025-29927
Type: github • Created: 2025-03-23 12:13:35 UTC • Stars: 70
lirantal/vulnerable-nextjs-14-CVE-2025-29927
Type: github • Created: 2025-03-23 09:22:35 UTC • Stars: 4
6mile/nextjs-CVE-2025-29927
Type: github • Created: 2025-03-23 08:11:09 UTC • Stars: 12
Ademking/CVE-2025-29927
Type: github • Created: 2025-03-22 18:42:27 UTC • Stars: 5
Timeline
-
CVE ID Reserved
-
CVE Published to Public
-
Proof of Concept Exploit Available
-
Detected by Nuclei
-
Added to KEVIntel