Vulnerability Description
Next.js before 13.4.20-canary.13 lacks a cache-control header and thus empty prefetch responses may sometimes be cached by a CDN, causing a denial of service to all users requesting the same URL via that CDN.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Vercel | Next.Js | < 13.4.20 |
References
- https://github.com/vercel/next.js/compare/v13.4.20-canary.12...v13.4.20-canary.1Product
- https://github.com/vercel/next.js/issues/45301ExploitIssue TrackingThird Party Advisory
- https://github.com/vercel/next.js/pull/54732Issue TrackingPatch
- https://github.com/vercel/next.js/compare/v13.4.20-canary.12...v13.4.20-canary.1Product
- https://github.com/vercel/next.js/issues/45301ExploitIssue TrackingThird Party Advisory
- https://github.com/vercel/next.js/pull/54732Issue TrackingPatch
FAQ
What is CVE-2023-46298?
CVE-2023-46298 is a vulnerability with a CVSS score of 7.5 (HIGH). Next.js before 13.4.20-canary.13 lacks a cache-control header and thus empty prefetch responses may sometimes be cached by a CDN, causing a denial of service to all users requesting the same URL via t...
How severe is CVE-2023-46298?
CVE-2023-46298 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-46298?
Check the references section above for vendor advisories and patch information. Affected products include: Vercel Next.Js.