Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
nullagent
@nullagent@partyon.xyz  ·  activity timestamp 4 days ago

There's an epic react server component RCE exploit making the rounds today.

A proof of concept just dropped. Probably wanna patch this rapidly.

https://github.com/ejpir/CVE-2025-55182-poc/tree/main

#React #Javascript #Cybersecurity #breaking

  • Copy link
  • Flag this post
  • Block
nullagent
@nullagent@partyon.xyz replied  ·  activity timestamp 3 days ago

And to be clear this is a real vulnerability in React which still ought to be patched.

More details on these vulnerablities and how to mitigate is linked below 👇🏿

https://react2shell.com

#React2Shell #react #javascript #nodejs #cybersecurity

  • Copy link
  • Flag this comment
  • Block
Elusive Man
@elusiveman@infosec.exchange replied  ·  activity timestamp 4 days ago

@nullagent straight from that git repo. Some dude vibe-coded something and found out it doesn't work.

Sorry, no caption provided by author
Sorry, no caption provided by author
Sorry, no caption provided by author
  • Copy link
  • Flag this comment
  • Block
Rob Ricci
@ricci@discuss.systems replied  ·  activity timestamp 4 days ago

@nullagent don't make me tap the sign

https://discuss.systems/@ricci/115216834314566623

  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.1-alpha.8 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login