Vercel ChangelogNov 6, 2025, 1:00 PMimportant 75

CVE-2025-48985:Vercel AI SDK 輸入驗證繞過漏洞安全公告

Original: CVE-2025-48985: Input Validation Bypass on AI SDK

Vercel has officially published a security advisory in its Changelog disclosing a security vulnerability identified as **CVE-2025-48985**…

Vercel 官方發布安全公告,指出其 AI SDK 存在編號為 CVE-2025-48985 的安全漏洞。該漏洞允許攻擊者繞過輸入驗證機制,可能導致潛在的安全風險。官方已釋出修復版本,強烈建議所有使用 Vercel AI SDK 的開發者立即檢查並升級至最新版本,以確保應用程式安全。

Vercel has officially published a security advisory in its Changelog disclosing a security vulnerability identified as **CVE-2025-48985**, which indicates that the Vercel AI SDK contains an "Input Validation Bypass" risk.

Full summary

Free shows the 3-line summary; Pro unlocks the full deep summary (~300 words) so you never have to click through.

See Pro plans →

Want the original English / full article?

Read on Vercel Changelog →

Summaries are AI-generated; the original article is authoritative.