Vercel issued out-of-cycle updates for two critical unauthenticated remote-code-execution flaws in Next.js: an AVIF/HEIC image-processing heap overflow and Windows-only path traversal, tracked as CVE-2026-75604. The image flaw is rooted in libheif, reached through Next.js's sharp and libvips image-optimization chain; malicious files with duplicate alpha channels of differing bit depths can trigger a controlled heap overflow. The issue, reported with a CVSS v4 score of 9.5, was confirmed against multiple production applications, and patched Next.js releases disable AVIF optimization while an upstream dependency fix propagates.
CVE-2026-75604 affects the incremental cache on Windows because route paths do not properly escape backslashes. Attackers can use percent-encoded backslashes to leave the cache directory, read files available to the server process, and write attacker-controlled cache content to selected paths; under susceptible Server Action patterns, this can be chained to RCE. Organizations running affected Windows deployments using the Pages Router or App Router without Cache Components should upgrade to Next.js 15.5.24 or 16.3.3; no configuration-only mitigation is available. Linux and macOS are not affected by the cache-path flaw.

See affected versions and whether adversaries are exploiting it.
3 events from the most recent confirmed update back to the earliest known activity.
On August 25, 2026, Vercel issued an out-of-cycle Next.js security release fixing a critical AVIF image-processing heap overflow and the Windows incremental-cache path traversal flaw later identified as CVE-2026-75604. The fixes were released in Next.js 15.5.24 and 16.3.3; the AVIF mitigation disabled AVIF optimization, while the traversal fix escaped backslashes and enforced cache-path containment.
Tenable reported that exploits are available for CVE-2026-75604, the Windows incremental-cache path traversal vulnerability in Vercel Next.js. The flaw is remotely exploitable without authentication or user interaction and can affect confidentiality, integrity, and availability.
Researchers reported confirming remote code execution against multiple production applications using crafted AVIF/HEIF input processed through Next.js image optimization. The underlying libheif flaw can cause a controlled heap buffer overflow through duplicate alpha channels with differing bit depths.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
3 references tracked. Mallory keeps watching after this page renders.
fortbridge.co.uk
Open sourcetenable.com
Open sourcebashoverflow.medium.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.