A vulnerability has been found in vercel next.js up to 15.5.15/16.2.4 and classified as problematic. This issue affects some unknown processing of the file /_next/image of the component Image Optimization API. The manipulation leads to allocation of resources.

This vulnerability is listed as CVE-2026-44577. The attack may be initiated remotely. There is no available exploit.

The affected component should be upgraded.