Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-27415— Nuxt allows DOS via cache poisoning with payload rendering response

CVSS 7.5 · High EPSS 0.26% · P49
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-27415

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Nuxt allows DOS via cache poisoning with payload rendering response
Source: NVD (National Vulnerability Database)
Vulnerability Description
Nuxt is an open-source web development framework for Vue.js. Prior to 3.16.0, by sending a crafted HTTP request to a server behind an CDN, it is possible in some circumstances to poison the CDN cache and highly impacts the availability of a site. It is possible to craft a request, such as https://mysite.com/?/_payload.json which will be rendered as JSON. If the CDN in front of a Nuxt site ignores the query string when determining whether to cache a route, then this JSON response could be served to future visitors to the site. An attacker can perform this attack to a vulnerable site in order to make a site unavailable indefinitely. It is also possible in the case where the cache will be reset to make a small script to send a request each X seconds (=caching duration) so that the cache is permanently poisoned making the site completely unavailable. This vulnerability is fixed in 3.16.0.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
在可信数据中接受外来的不可信数据
Source: NVD (National Vulnerability Database)
Vulnerability Title
Nuxt 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Nuxt是Nuxt开源的一个免费的开源框架。 Nuxt 3.16.0之前版本存在安全漏洞,该漏洞源于通过向CDN后的服务器发送特制HTTP请求,可能在某些情况下毒化CDN缓存,严重影响站点的可用性。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
nuxtnuxt >= 3.0.0, < 3.16.0 -

II. Public POCs for CVE-2025-27415

#POC DescriptionSource LinkShenlong Link
1Nuxt3 Acceptance of Extraneous Untrusted Data With Trusted Data vulnerabilityhttps://github.com/jiseoung/CVE-2025-27415-PoCPOC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-27415

登录查看更多情报信息。

IV. Related Vulnerabilities

V. Comments for CVE-2025-27415

No comments yet


Leave a comment