All projects

2026

Nextjs Auth Bypass Case Study

Pentest case study: Next.js middleware authentication bypass via URL encoding (CVSS 9.1). 5 findings in production Vercel app. Paid engagement.

Overview

Pentest case study: Next.js middleware authentication bypass via URL encoding (CVSS 9.1). 5 findings in production Vercel app. Paid engagement. Open-source project by Soul core dev team, published on GitHub.

Highlights

  • 1 star on GitHub
  • Open source — view the code and contribute on GitHub

Built with

  • Code

Discussion (0)

Log in to comment.

No comments yet. Be the first to start the conversation.