CVE-2026-23869
- CVSS
- —
- EPSS
- 0.016 (74.0th percentile)
- CISA KEV
- Not listed
- Exploitation
- No report
- Public exploits
- None seen
- State
- Unknown
Coverage
Vercel (blog + changelog)
Summary of CVE-2026-23869
Summary Impact Resolution Fixed In A high-severity vulnerability (CVSS 7.5) in React Server Components can lead to Denial of Service. We created new rules to address these vulnerabilities and deployed them to the Vercel WAF to automatically protect all projects hosted on Vercel at no cost. However…
What we observed
No signals recorded