New deployments of vulnerable Next.js applications are now blocked by default
Source: Vercel Blog
Update Summary
Any new deployment containing a version of Next.js that is vulnerable to will now automatically fail to deploy on Vercel. CVE-2025-66478
We strongly recommend upgrading to a patched version regardless of your hosting provider. Learn more
This automatic protection can be disabled by setting the en…