FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ChrisTan
Staff
Staff
Article Id 387407
Description This article explains how to apply the new IPS Signature for CVE-2025-29927.
Scope FortiOS.
Solution

 

A new vulnerability, CVE-2025-29927 (Next.js Middleware Bypass Vulnerability), has been publicly disclosed.

Fortinet products are not affected by this vulnerability. However, it is important to ensure that internal systems are protected from potential exploitation.

 

To help with this, Fortinet has released a new IPS signature:
Name: Vercel.Next.js.x-middleware-subrequest.Authentication.Bypass.
Signature ID: 57569.

 

This signature is designed to detect and block attempts to exploit this vulnerability, protecting devices within the network.

 

2025-04-10_13h29_35.png

 

Action: Set the action to 'Block' to ensure protection is enforced. Make sure the IPS profile is applied to relevant policies so the signature takes effect.

 

Related document:

Intrusion Prevention Vercel.Next.js.x-middleware-subrequest.Authentication.Bypass