A vulnerability has been found in vercel next.js up to 15.5.15/16.2.4 and classified as problematic. This issue affects some unknown processing of the file /_next/image of the component Image Optimization API. The manipulation leads to allocation of resources.
This vulnerability is listed as CVE-2026-44577. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.