Content pfp
Content
@
https://warpcast.com/~/channel/rainbowkit
0 reply
0 recast
0 reaction

Daniel Sinclair pfp
Daniel Sinclair
@danielsinclair
If you're using the Middleware API in Next.js (middleware.ts) and have routes protected by SIWE authorization, ensure that you've mitigated CVE-2025-29927. Vercel, Netlify, and Cloudflare have already deployed network-layer filtering to mitigate malicious headers for vulnerable projects. The standard RainbowKit Authentication implementation using /api/ routes and server-side session validation is not impacted. https://zeropath.com/blog/nextjs-middleware-cve-2025-29927-auth-bypass
2 replies
0 recast
6 reactions

pugson pfp
pugson
@pugson
this only affects versions 13 and below btw
1 reply
0 recast
0 reaction

phil pfp
phil
@phil
@henry
0 reply
0 recast
1 reaction