ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
Two Next.js vulnerabilities disclosed in the August 2026 Security Release include GHSA-2xp9-vwfh-vxw4, enabling unauthenticated remote code execution via crafted AVIF input, and CVE-2026-75604 affecting Windows-hosted servers. Vercel disabled AVIF optimization and uses Linux, so hosted applications need no action. Self-hosted apps must upgrade immediately.
Tap to vote and see what everyone thinks.
Summary by ByteBrief