PoC Archive PoC Archive

tag

OOM

  • CVE-2026-44577 web MEDIUM 5.9

    Next.js Image Optimization API OOM DoS (Self-Hosted) (CVE-2026-44577)

    CVE-2026-44577 is a denial-of-service issue in Next.js Image Optimization on self-hosted deployments. In vulnerable builds, /next/image can fetch very large local assets into memory without an effective size cap and then perform expensive image…

    Patched 2026-05-17