logo

React2Shell Vulnerability: Maximum-Severity Flaw in React Server Components Actively Exploited by China-Backed Groups 

ID: 1b5c5aea-4779-5e31-bc4f-234738bd405a

STIX ID: report--1b5c5aea-4779-5e31-bc4f-234738bd405a

Feed Name: SOC Prime Blog

Threat Score
90/100

Date Published: 2025-12-05

Date Updated: 2026-04-30

Author: Veronika Telychko

...
...

**Executive summary:** React2Shell (CVE-2025-55182) is a maximum-severity unauthenticated RCE in React Server Components and Next.js App Router that allows arbitrary server-side JavaScript execution via unsafe deserialization; public PoCs surfaced quickly and multiple China-linked APT clusters are actively scanning and exploiting the flaw at scale, prompting urgent patching and mitigations such as WAF rules and Cloudflare protections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.