Next.js rocked by critical 9.1 level exploit...

preview_player
Показать описание


#cybersecurity #programming #thecodereport

💬 Chat with Me on Discord

🔗 Resources

🔥 Get More Content - Upgrade to PRO

Use code YT25 for 25% off PRO access

🎨 My Editor Settings

- Atom One Dark
- vscode-icons
- Fira Code Font

🔖 Topics Covered

- Cybersecurity issues for web developers
- Recent trends in web development
Рекомендации по теме
Комментарии
Автор

Jokes on you, I have zero visitors to my website.

jagadishb
Автор

Every developer instantly transformed into a security expert overnight.

orcdev
Автор

finally fireship dropped a video so I can make an opinion on the drama

HamzaAlAzhar
Автор

SRK on a fireship thumbnail. A sight I never thought I would see. 😅

smreha
Автор

We're finally seeing the fruits of vibe coding.

heMech
Автор

“You’ll want to upgrade as ASAP as possible”. These kind of gold choice of words are at least half the reason I’m subscribed.

ChristianRRL
Автор

Me just trying to make a Hello World app, but Next.js got me rewriting security protocols.

DataIsBeautifulOfficial
Автор

even clerk tried to spin it as a marketing move but they were vulnerable too

JohnneyleeRollins
Автор

SRK appears in a fireship thumbnail. A sight I never imagined I'd see.

IdaNavarro-zu
Автор

I'm so glad I eventually became a big corporate dev where I don't even make decisions on my own. If something goes wrong with my app, there's at least 20 people I can point to who told me to do things the way I did.

That__Guy
Автор

Finally, a video not about AI after a long time. Thanks vibe coding

Hossain-sp
Автор

Shahrukh khan on thumbnail was not something I ever expected on this channel

tonystarx
Автор

1:09 "As ASAP As Possible" made me laugh out loud. I'm gonna use it myself from now on.

TheMarchack
Автор

I still can't fathom how they tried to spin this off as a marketing strategy for their firewall service. "Hey we had this disastrous exploit, but we silently patched our firewall, and then told other providers about it 20 days after"
Also the fact that they and their sponsored content creator lied about the fact that auth was never recommended to be on the middleware, and then removed the part on the docs that explicitly recommends that.

amine
Автор

If a security bug can be summed up in 2 minutes or less, you've seriously screwed up.

DingleFlop
Автор

3:15 bro just used a dramatic tech problem to promote his sponsor 😂😂😂😂😂🤣💔
Live long jiff 🤣✨

MohamedAlhawa
Автор

so next literally just lets the client decide which middleware it wants to run by setting a header? Vulnerabilities happen but this is just a level of incompetence that should make people wanna ditch next _immediately_

pokefreak
Автор

1:22 Denken profile pic. Super based and totally checks out.

steampunkWizardStudios
Автор

Why would you ever make a web header control what middleware runs? That's crazy.

echobucket
Автор

Manger : Rollout a fix ❌
Me : I'll wait for fireship video ✅

JacobSamro
welcome to shbcf.ru