From 40c706d6f271774cc09b37639e013fa9a464bf26 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Eduardo=20Bou=C3=A7as?= Date: Sat, 6 Dec 2025 15:13:27 +0000 Subject: [PATCH 1/3] feat: add `@netlify/plugin-cve-2025-55182` --- site/plugins.json | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) diff --git a/site/plugins.json b/site/plugins.json index 59a0ee3b1..d7b6c53eb 100644 --- a/site/plugins.json +++ b/site/plugins.json @@ -1042,5 +1042,21 @@ "repo": "https://github.com/jclusso/strapi-plugin-netlify-deployments#readme", "version": "2.0.1", "docs": "https://market.strapi.io/plugins/strapi-plugin-netlify-deployments" + }, + { + "author": "Netlify", + "description": "Mitigates CVE-2025-55182 for affected Next.js versions.", + "name": "CVE-2025-55182 Mitigation", + "package": "@netlify/plugin-cve-2025-55182", + "repo": "https://www.netlify.com/changelog/2025-12-03-react-security-vulnerability-response", + "version": "1.0.0", + "compatibility": [ + { + "version": "1.0.0", + "siteDependencies": { + "next": ">=15.0.0 <15.0.5 || >=15.1.0 <15.1.9 || >=15.2.0 <15.2.6 || >=15.3.0 <15.3.6 || >=15.4.0 <15.4.8 || >=15.5.0 <15.5.7 || >=16.0.0 <16.0.7" + } + } + ] } ] From 82a3c458b190789cffcaa7e9935821d2458e24af Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Eduardo=20Bou=C3=A7as?= Date: Sat, 6 Dec 2025 15:15:24 +0000 Subject: [PATCH 2/3] update description --- site/plugins.json | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/site/plugins.json b/site/plugins.json index d7b6c53eb..4a17cf302 100644 --- a/site/plugins.json +++ b/site/plugins.json @@ -1045,7 +1045,7 @@ }, { "author": "Netlify", - "description": "Mitigates CVE-2025-55182 for affected Next.js versions.", + "description": "Blocks deploys for Next.js sites affected by CVE-2025-55182", "name": "CVE-2025-55182 Mitigation", "package": "@netlify/plugin-cve-2025-55182", "repo": "https://www.netlify.com/changelog/2025-12-03-react-security-vulnerability-response", From 6f082615313e7e1c65ac12a594eb62775586cf35 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Eduardo=20Bou=C3=A7as?= Date: Sat, 6 Dec 2025 16:13:41 +0000 Subject: [PATCH 3/3] add flag --- site/plugins.json | 1 + 1 file changed, 1 insertion(+) diff --git a/site/plugins.json b/site/plugins.json index 4a17cf302..a950c3374 100644 --- a/site/plugins.json +++ b/site/plugins.json @@ -1053,6 +1053,7 @@ "compatibility": [ { "version": "1.0.0", + "featureFlag": "plugins-cve-2025-55182", "siteDependencies": { "next": ">=15.0.0 <15.0.5 || >=15.1.0 <15.1.9 || >=15.2.0 <15.2.6 || >=15.3.0 <15.3.6 || >=15.4.0 <15.4.8 || >=15.5.0 <15.5.7 || >=16.0.0 <16.0.7" }