CVE-2026-0969

Publication date

2026-02-12 01:35:06

Family

HashiCorp

State

PUBLISHED

Description

The serialize function used to compile MDX in next-mdx-remote is vulnerable to arbitrary code execution due to insufficient sanitization of MDX content. This vulnerability, CVE-2026-0969, is fixed in next-mdx-remote 6.0.0.