logo

React2Shell: Rapid CVE-2025-55182 Exploitation Exposed

ID: d072539d-cdd8-549d-a0c5-cf4e4f6cc07a

STIX ID: report--d072539d-cdd8-549d-a0c5-cf4e4f6cc07a

Feed Name: Cyble Blog

Threat Score
92/100

Date Published: 2025-12-08

Date Updated: 2026-07-16

...
...

The report details a critical RCE vulnerability (React2Shell, CVE-2025-55182 with CVSS 10.0) in React Server Components and affected Next.js releases, public PoCs released by a researcher, and rapid weaponization by China-nexus actors and opportunistic scanners within hours of disclosure, causing widescale scanning, exploitation attempts, and emergency mitigations by major providers; organizations are urged to patch immediately, enable interim protections, and hunt for related IOCs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.