{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreigij4ewyxt43rgobz5eb2lfoycimrhkuykdubrm47uhjfyqzoahxq",
"uri": "at://did:plc:6wtxqaikjf62unmnajbfbq5v/app.bsky.feed.post/3mm7ml2t7hvj2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreifvdqojgk2kp7ijoj6nxuwv2np7zuckxh3n36y6guzfbucp65gt7m"
},
"mimeType": "image/webp",
"size": 18334
},
"path": "/high-severity-next-js-flaw-can-expose-cloud-metadata-and-internal-services/",
"publishedAt": "2026-05-19T14:17:49.000Z",
"site": "https://vpncentral.com",
"tags": [
"News",
"High-severity Next.js flaw can expose cloud metadata and internal services",
"VPN Central"
],
"textContent": "A high-severity vulnerability in Next.js can let attackers force vulnerable self-hosted servers to send requests to internal or external systems. The flaw is tracked as CVE-2026-44578 and affects self-hosted Next.js applications that use the built-in Node.js server. Vercel-hosted deployments are not affected, according to the official advisory. The issue creates a server-side request forgery risk […]\n\nThe post High-severity Next.js flaw can expose cloud metadata and internal services appeared first on VPN Central.",
"title": "High-severity Next.js flaw can expose cloud metadata and internal services"
}