React2Shell Exploitation Escalates into Large-Scale Global Attacks, Forcing Emergency Mitigation•Read post
CISA has accelerated the patching deadline for React2Shell (CVE-2025-55182), a critical vulnerability with a CVSS score of 10.0 affecting React Server Components and frameworks like Next.js. The flaw allows unauthenticated remote code execution through unsafe deserialization. Since disclosure on December 3, 2025, threat actors
Sort: