Back to search
CVE-2026-2293
Published: Feb 27, 2026
Modified: Feb 27, 2026
PUBLISHED
Description
A NestJS application using @nestjs/platform-fastify can allow bypass of authentication/authorization middleware when Fastify path-normalization options are enabled. This issue affects nest.Js: 11.1.13.
| Vendor | Product | Versions |
|---|---|---|
nest.js | nest.js | affected 11.1.13 |
Weaknesses (CWE)
References
https://fluidattacks.com/advisories/neton
third-party-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now