PoC Archive PoC Archive

tag

CSP-Nonce

  • CVE-2026-44581 web MEDIUM 4.7

    Next.js CSP Nonce Cache-Poisoned XSS (CVE-2026-44581)

    CVE-2026-44581 is a reflected XSS issue in Next.js App Router nonce handling. Malformed nonce values from a Content-Security-Policy request header can be reflected into rendered HTML script attributes without safe attribute-context escaping. In caching…

    Patched 2026-05-17