A vulnerability in Nuxt 4.4.0 through 4.5.0 causes sensitive SSR data in the payload cache to be disclosed to unauthorized users due to an insufficient cache key implementation.
Nuxt +4
remote-code-execution
template-injection
cve-2026-71320
2r
3t
updated