cloudflare/vinext

App Router: `next/script` stylesheets and `nonce` propagation incomplete

已关闭

#1,517 创建于 2026年5月22日

 (0 条评论) (0 个反应) (0 位负责人)TypeScript (384 个派生)github user discovery
adapter-api-e2ehelp wanted

仓库指标

星标
 (8,625 个星标)
PR 合并指标
 (平均合并 1天 1小时) (30 天内合并 462 个 PR)

描述

This issue was created by an agent analysing CI failures from the Next.js Deploy Suite (vinext main vs Next.js v16.2.6, 2026-05-22).

Problem

The next/script component does not load stylesheets associated with scripts, does not pass through nonce attributes, and does not implement bootstrap-script preinitialization (multiple bootstrap scripts expected; only one rendered).

Stylesheets associated with `next/script` not loaded; nonce missing; preinit bootstrap scripts incomplete

Estimated Impact

~3 test failures across the deploy suite.

Affected Test Suites

  • test/e2e/app-dir/app/index.test.ts (3 failures)

Recommendation

  1. Reproduce first in vinext's own test suite. Add a <Script> with an associated stylesheet and a CSP nonce, plus a fixture asserting multiple preinit bootstrap scripts. Confirm each fails.

  2. Load associated stylesheets. When <Script> has linked stylesheets via the Next.js metadata convention, emit corresponding <link rel="stylesheet"> tags.

  3. Propagate nonce. Add the request nonce to every emitted script/style tag.

  4. Implement bootstrap preinit. Match the number of preinit bootstrap scripts Next.js emits for next/script.


Part of #1328.

贡献者指南