← Newsroom

NOTICE

[Notice] Security Update & Service Stabilization Completed regarding React/Next.js Vulnerabilities

2025.12.16

Hello, this is the Fintag Team.

Recently, new security vulnerabilities were discovered in the React Server Components (RSC) and Next.js environments. Thanks to our pre-established robust security systems, Fintag was able to detect anomalies early, and we are writing to inform you that all necessary countermeasures have been successfully completed.


1. Overview of the Security Issue

The React and Next.js development teams recently disclosed security vulnerabilities related to Denial of Service (DoS) and Source Code Exposure.

  • Key Details: It was confirmed that malicious HTTP requests could trigger infinite loops on the server (DoS) or potentially return parts of the server function code.
  • Impact: While Remote Code Execution (RCE) is not possible, it poses a risk to server availability.
  • Related CVEs: CVE-2025-55184, CVE-2025-67779 (DoS), CVE-2025-55183 (Source Code Exposure).

2. Fintag & MiDeal Response Status

As a platform managing corporate financial assets, Fintag prioritizes Security above all else, maintaining a thorough 24/7 monitoring system.

✅ December 04, 2025: Anomaly Detection & Defense Activation

Fintag operates under strict pre-established security policies based on AWS (Amazon Web Services).

On December 4th, coinciding with the receipt of the vulnerability report, our existing security systems immediately detected abnormal call patterns (anomalies) within the server. As our defense logic automatically activated to block these unauthorized threats, intermittent connection delays occurred temporarily on mideal.kr and fintag.kr. This was a normal part of the security process where the system detects and defends against external threats.

✅ December 05, 2025: Security Update Completed

Following the analysis of the detected anomalies, we completed the application of the latest security patches released by the React and Next.js teams (v19.0.3, v19.1.4, v19.2.3, etc.) to all services as of December 5th.

Currently, all Fintag and MiDeal services are operating normally with the vulnerabilities fundamentally resolved.


3. Our Commitment to a Safe Financial Environment

Through this response, we have reaffirmed the importance of a prepared security system. We have confirmed that there was no impact on your data. Fintag promises to continue providing corporate financial optimization solutions built on a flawless security environment.

Thank you.

Fintag Team The New Standard for Corporate Financial Asset Management

Related