Overview
Discover a critical security vulnerability in Next.js that could be affecting thousands of applications in this 11-minute video from Snyk. Learn how this middleware-related flaw was discovered by security researcher Rachid Allam, understand who is impacted, and get practical guidance on securing your applications. The video breaks down what middleware is, explains optimistic checks, demonstrates the vulnerability in action, and shows how to identify if your application is at risk. Complete with resources including the original research blog post, Snyk's vulnerability database entry, and a GitHub repository demonstrating the vulnerability. Perfect for Next.js developers who need to understand and mitigate this security threat quickly.
Syllabus
00:00 - Intro
00:12 - What is middleware?
02:05 - Optimistic checks with middleware
03:51 - Next.js disclosure
04:20 - Snyk vulnerability database
04:44 - Are you affected?
05:17 - Who discovered it?
06:02 - The vulnerability in action
09:24 - Easily identify vulnerabilities
10:21 - Outro
Taught by
Snyk