CVE-2025-49005 | vercel next.js up to 15.3.2 React Server request smuggling (ID 79346 / EUVD-2025-19911)
A vulnerability classified as problematic has been found in vercel next.js up to 15.3.2. Affected by this vulnerability is an unknown functionality of the component React Server Component. The manipulation leads to http request smuggling.
This vulnerability is documented as CVE-2025-49005. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.