Skip to content

Critical Vulnerability CVE-2025-29927 in [email protected] #3846

@GettingOutTheNopSled

Description

@GettingOutTheNopSled

App Version

3.18.0

API Provider

Not Applicable / Other

Model Used

N/A

🔁 Steps to Reproduce

The next version being used in web (evals>apps>web) has a critical vulnerability that is fixed in 15.2.3. Remediating this with that small version bump should be quick and pose no issues with functionality as I believe that version bump was just to fix the vulnerability.

"next": "15.2.2",

💥 Outcome Summary (Optional)

No response

📄 Relevant Logs or Errors

Metadata

Metadata

Assignees

No one assigned

    Labels

    Issue - In ProgressSomeone is actively working on this. Should link to a PR soon.bugSomething isn't working

    Type

    No type

    Projects

    Status

    Done

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions