React2Shell Remote Code Execution (RCE) Vulnerability
ID: 27397801-b79e-5b67-8338-fbf7110abd57
STIX ID: report--27397801-b79e-5b67-8338-fbf7110abd57
Feed Name: FortiGuard Threat Signals
The report warns of React2Shell, a critical unauthenticated RCE in React Server Components and some Next.js implementations that enables arbitrary server-side code execution, and summarizes Iran-linked cyber operations that are suspected to exploit such vulnerabilities; these operations reportedly rely on opportunistic exploitation of unpatched edge infrastructure and use TTPs including phishing, DDoS, data exfiltration, and destructive attacks targeting government, critical infrastructure, and enterprise environments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
