VYPR

next-video

by Next Video

CVEs (1)

  • CVE-2026-54150Aug 20, 2026
    risk 0.00cvss epss

    ### Impact The HTTP route handler exported by `next-video/request-handler` — which the README instructs consumers to mount at `/api/video` — allows an unauthenticated remote attacker to read arbitrary `.json` files from the production filesystem of any application following…