Reactの深刻な脆弱性「CVE-2025-55182」により、RSCを利用する公開サービス215万件超が影響を受ける可能性が判明した。国家支援とされる脅威グループによる悪用も観測され、早期対策が求められている。
UIライブラリ「React」(React.js)および「Next.js」で、認証なしにリモートコード実行が可能になる重大なセキュリティ脆弱性「CVE-2025-55182」が存在することが明らかになった。この脆弱性は「React2Shell」とも呼ば ...
Exploitation of React2Shell started almost immediately after disclosure. AWS reported that at least two known China-linked ...
A newly discovered security flaw in the React ecosystem — one of the most widely used technologies on the web — is prompting ...
Critical React vulnerability tracked as CVE-2025-55182 and React2Shell can be exploited for unauthenticated remote code ...
React Server Components contains a vulnerability that can be exploited on a large scale. To what extent is it similar to the ...
Amazon has warned that China-nexus hacking crews began hammering the critical React "React2Shell" vulnerability within hours ...
A newly identified vulnerability dubbed React2Shell, which was only made public on Thursday, is already being exploited by ...
Amid new reports of attackers pummeling a maximum security hole (CVE-2025-55182) in the React JavaScript library, ...