Description
Next.js before 13.4.20-canary.13 lacks a cache-control header and thus empty prefetch responses may sometimes be cached by a CDN, causing a denial of service to all users requesting the same URL via that CDN.
Remediation
References
Related Vulnerabilities
WordPress Plugin Track That Stat 'data' Parameter Cross-Site Scripting (1.0.8)
WordPress Plugin LeagueManager Multiple Cross-Site Scripting Vulnerabilities (3.7)
WordPress Plugin Markdown on Save Improved Cross-Site Scripting (2.5)
WordPress Plugin Google XML Sitemap for Videos Cross-Site Request Forgery (2.6.1)