React2Shell: Critical RCE Vulnerability Rocks React Ecosystem, Millions of Servers at Risk
A critical 10.0 severity vulnerability, CVE-2025-55182, has been discovered in ReactJS Server Components, allowing unauthenticated remote code execution. Dubbed 'React2Shell', this exploit poses an immediate and severe threat to millions of modern React applications, including those built with frameworks like Next.js.