Outage in Sanity

Security vulnerability identified with React Server Components

Resolved Minor
December 03, 2025 - Started 14 days ago - Lasted 1 day
Official incident page

Incident Report

A security vulnerability (CVE-2025-55182) affecting React Server Components (RSC) and several related packages including Next.js was disclosed today by the React Team (https://react.dev/blog/2025/12/03/critical-security-vulnerability-in-react-server-components). Our Impact: Vercel has already rolled out platform-level protections and preventative measures. We are acting proactively and have started rolling out fixes across our platform and services as well. Required Action: Sanity studio deployments are not affected and require no action. If your Studio is deployed using Next.js, please follow the recommended steps outlined here: https://vercel.com/changelog/cve-2025-55182#resolution.

Need to monitor Sanity outages?

One place to monitor all your cloud vendors. Get instant alerts when an outage is detected.

Latest Updates ( sorted recent to last )
RESOLVED 13 days ago - at 12/04/2025 10:12PM

We have completed dependency updates per guidance from Vercel and the React team.

Sanity studio deployments are not affected and require no action.

If your Studio is deployed using Next.js, please follow the recommended steps outlined here: https://vercel.com/changelog/cve-2025-55182#resolution.

MONITORING 14 days ago - at 12/03/2025 08:48PM

Our team has applied the initial recommended updates from the React Team regarding the recent vulnerability. We are actively completing remaining internal package updates and closely monitoring any further guidance from React and Vercel.

Required Action for Next Studio Deployments:

Note: Sanity Studio deployments are not affected and require no action.

If your Studio is deployed using Next.js, please follow the recommended steps outlined here:
https://vercel.com/changelog/cve-2025-55182#resolution

INVESTIGATING 14 days ago - at 12/03/2025 07:37PM

A security vulnerability (CVE-2025-55182) affecting React Server Components (RSC) and several related packages including Next.js was disclosed today by the React Team (https://react.dev/blog/2025/12/03/critical-security-vulnerability-in-react-server-components).

Our Impact:

Vercel has already rolled out platform-level protections and preventative measures. We are acting proactively and have started rolling out fixes across our platform and services as well.

Required Action:

Sanity studio deployments are not affected and require no action.

If your Studio is deployed using Next.js, please follow the recommended steps outlined here: https://vercel.com/changelog/cve-2025-55182#resolution.

Status Aggregator for All Your Third-Party Services

With IsDown, you can monitor all your critical services' official status pages from one centralized dashboard and receive instant alerts the moment an outage is detected. Say goodbye to constantly checking multiple sites for updates and stay ahead of outages with IsDown.

Start free trial

No credit card required · Cancel anytime · 4600 services available

Integrations with Slack Microsoft Teams Google Chat Datadog PagerDuty Zapier Discord Webhook