CVE-2025-57822A vulnerability affecting Next.js Middleware has been addressed. It impacted versions prior to v14.2.32 and v15.4.7.+2Aaron Brown, Zack Tanner, and 2 others
CVE-2025-55173A vulnerability affecting Next.js Image Optimization has been addressed. It impacted versions prior to v15.4.5 and v14.2.31.Aaron Brown, Steven Salat, and 1 other
CVE-2025-57752A vulnerability affecting Next.js Image Optimization has been addressed. It impacted versions prior to v15.4.5 and v14.2.31.Aaron Brown, Steven Salat, and 1 other
s1ngularity: supply chain attack in Nx packagesA critical vulnerability was published in Nx and some of its supporting libraries. Vercel builds are safe from this vulnerability by default.+4Aaron Brown, Anthony Shew, and 4 others
Anomaly alerts now in limited beta for Enterprise customersEnterprise customers with Observability Plus can now receive anomaly alerts through the limited beta+5Fabio Benedetti, Damien Simonin Feugas, and 5 others
Deploy Slack's Bolt.js to Vercel with @vercel/slack-boltDeploy your Slack agent to Vercel's AI Cloud using @vercel/slack-bolt to take advantage of AI Gateway, Fluid compute, and more.Matt LewisSenior Solutions Engineer
SAML SSO is now available to Pro teamsSAML-based Single Sign-On (SAML SSO) is now available as an add-on to all Pro teams and can be configured directly in the dashboard. This includes support for major identity providers like Okta, Azure AD, and Google Workspace.Jas Garcha, Javier Bórquez, and 1 other
30-day runtime log retention, now available in Observability PlusObservability Plus subscribers now get 30 days of runtime log retention in the Logs page within the Vercel dashboardDamien Simonin Feugas, Timo Lins, and 1 other