Skip to main content
See every side of every news story
Published loading...Updated

New React vulns leak secrets, invite DoS attacks

React patched two denial-of-service flaws and one source-code exposure bug affecting Server Components, with over 50 organizations impacted by related exploits, researchers said.

Summary by The Register
: And the earlier React2Shell patch is vulnerable

7 Articles

The discovery of the Sysdig Threat Research team marks a turning point: React2Shell exploits reach a new level of complexity – and classic protection mechanisms reach their limits. On December 5, 2025, just two days after the public announcement of CVE-2025-55182 – a vulnerability with maximum severity level in React server components (RSCs), which allows remote code execution – the Sysdig Threat Research team (TRT) has a novel [...] The post Et…

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

The Hacker News broke the news in on Friday, December 12, 2025.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal