Critical React2Shell RCE Vulnerability Exploited in the Wild to Execute Malicious Code

A critical remote code execution vulnerability, tracked as CVE-2025-55182 and dubbed “React2Shell,” is now under active exploitation in the wild. GreyNoise researchers have detected opportunistic, largely automated exploitation attempts targeting the unsafe deserialization flaw in the React Server Components Flight protocol. The vulnerability enables unauthenticated remote code execution (RCE) affecting React and downstream ecosystems, including […]

The post Critical React2Shell RCE Vulnerability Exploited in the Wild to Execute Malicious Code appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: