Latest News for: cve

Edit

Linux Kernel Rust Code Sees Its First CVE Vulnerability

Slashdot 17 Dec 2025
... its first CVE tied to Rust code ... This first CVE (CVE-2025-68260) for Rust code in the Linux kernel pertains to the Android Binder rewrite in Rust.
Edit

CVE-2025-55182: New React Bug Targets Crypto Users’ Wallets

BitRSS 15 Dec 2025
A recently discovered security issue in React code has been exploited to inject harmful wallet-draining scripts onto cryptocurrency websites, according to Security Alliance (SEAL) ... .
Edit

React2Shell flaw (CVE-2025-55182) exploited for remote code execution (Sophos Group Ltd)

Public Technologies 11 Dec 2025
This vulnerability (CVE-2025-55182) was disclosed by React on December 3, 2025, and assigned a CVSS score of 10.0 ... The public release of proof-of-concept (PoC) code to exploit CVE-2025-55182 means that ...
Edit

CVE-2025-55182: React2Shell Analysis, Proof-of-Concept Chaos, and In-the-Wild Exploitation (Trend Micro Inc)

Public Technologies 10 Dec 2025
). The text version of this document is not available ... Disclaimer ... (noodl. 128296925) .
Edit

runZero Earns CVE Numbering Authority (CNA) Designation, Strengthening Leadership in Exposure and Vulnerability Management

Business Wire 10 Dec 2025
AUSTIN, Texas--(BUSINESS WIRE)--runZero authorized as a CVE Numbering Authority, enabling the company to assign and publish CVE IDs and strengthen vulnerability disclosure ... .
Edit

React2Shell: How Opportunist Attackers Exploited CVE-2025-55182 Within Hours (Darktrace plc)

Public Technologies 10 Dec 2025
) What is React2Shell? CVE-2025-55182, also known as React2Shell is a vulnerability within React server components that allows for an unauthenticated attacker to gain remote code ...
Edit

CVE-2025-55182: React2Shell Critical Vulnerability — what it is and what to do (Dynatrace Inc)

Public Technologies 10 Dec 2025
) TL;DR. A critical flaw in React's Flight protocol (CVE-2025-55182) allows attackers to run code on servers using React Server Components ... [...] ... Attachments Original document Permalink.
Edit

CVE-2025-55182 and CVE-2025-66478 (“React2Shell”): All you need to know – UPDATED (JFrog Ltd)

Public Technologies 09 Dec 2025
) IMPORTANT UPDATE ... This POC shows the simplicity of exploiting this CVE and reflects the real severity and impact of this CVE ... [...] ... Attachments Original document Permalink. Disclaimer.
Edit

React2Shell: Remote Code Execution Vulnerability (CVE-2025-55182) (Zscaler Inc)

Public Technologies 08 Dec 2025
This is an abstract of the document ... Attachments Original document Permalink. Disclaimer. Zscaler Inc ... (noodl. 128253179) .
Edit

CVE-2025-55182 and CVE-2025-66478 (“React2Shell”) – All you need to know (JFrog Ltd)

Public Technologies 05 Dec 2025
What happened A critical React vulnerability - CVE-2025-55182 (and the corresponding CVE-2025-66478 in Next.js) was published by the React maintainers ... [...] ... Disclaimer ... (noodl.
Edit

Critical React Server Components Vulnerability CVE-2025-55182: What Security Teams Need to Know (Trend Micro Inc)

Public Technologies 05 Dec 2025
CVE-2025-55182 is a critical (CVSS 10.0) pre-authentication remote code execution vulnerability affecting React Server Components used in React.js, ...
Edit

CVE-2025-55182: React2Shell Critical Vulnerability: What it is and what to do (Dynatrace Inc)

Public Technologies 05 Dec 2025
) TL;DR. A critical flaw in React's Flight protocol (CVE-2025-55182) allows attackers to run code on servers using React Server Components ... [...] ... Attachments Original document Permalink.
×