A critical unauthenticated remote code execution flaw in React Server Components, tracked as CVE-2025-55182 and widely dubbed React2Shell, exposed React 19 server-side packages and downstream frameworks including Next.js App Router. The bug stems from unsafe deserialization in the RSC/Flight protocol, allowing a single crafted HTTP request to reach vulnerable server function paths and execute arbitrary code in default deployments, including some apps that did not explicitly define Server Function endpoints. React released fixes for react-server-dom-webpack, react-server-dom-parcel, and react-server-dom-turbopack in 19.0.1, 19.1.2, and 19.2.1, while Next.js issued related guidance under CVE-2025-66478 for affected 15.x, 16.x, and certain canary releases; vendors stressed that WAF rules and hosting-provider mitigations are only temporary and that patching and redeployment are required.
Security firms and vendors reported rapid weaponization after disclosure, with public exploit code, Nuclei and Metasploit support, and confirmed in-the-wild exploitation against internet-facing Next.js and other RSC-enabled applications. Reported post-compromise activity included XMRig cryptominers, Sliver, MeshAgent, Cobalt Strike, SNOWLIGHT, ShadowPAD, credential theft targeting cloud and Kubernetes environments, and persistence mechanisms tied to multiple China-linked actors and other threat groups; CISA added the flaw to its Known Exploited Vulnerabilities catalog. Researchers estimated broad exposure across cloud environments and web assets, while Cloudflare, Akamai, Imperva, Google Cloud, and others deployed emergency protections, underscoring the scale and urgency of remediation.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
18 events from the most recent confirmed update back to the earliest known activity.
The React advisory notes that an additional denial-of-service CVE was added in an update dated January 26, 2026, expanding the set of tracked React Server Components security issues.
Microsoft said exploitation activity had been observed as early as December 5 and that several hundred machines across multiple organizations were compromised, with payloads including coin miners, RATs, ShadowPAD, and SNOWLIGHT.
Rapid7 announced that Metasploit had added an exploit module for CVE-2025-55182, making exploitation tooling more broadly available to defenders and attackers alike.
Next.js published a security update covering downstream impact from CVE-2025-55183 and CVE-2025-55184, and said the initial fix for the DoS issue was incomplete, requiring a further remediation tracked as CVE-2025-67779.
CISA added CVE-2025-55182 to its Known Exploited Vulnerabilities catalog after active exploitation was confirmed, and federal agencies were directed to remediate by December 26, 2025.
Sysdig said it recovered a novel Linux implant named EtherRAT from a compromised Next.js application exploited via CVE-2025-55182, marking a shift toward stealthier persistence-focused post-exploitation.
Multiple later reports state attackers began exploiting CVE-2025-55182 on December 5, 2025, with campaigns targeting public-facing React and Next.js applications shortly after disclosure.
Cloudflare reported issues beginning at 09:09 UTC after deploying a WAF change intended to mitigate the React vulnerability, then deployed a fix about 10 minutes later. The company said the outage was caused by the mitigation change, not by an attack.
Rapid7 reported public proof-of-concept availability and confirmed in-the-wild exploitation, including MeshAgent deployment and exploitation attempts observed by its honeypots. The company also noted CISA had added the flaw to the KEV catalog.
Reporting on the disclosure noted that Google Cloud, alongside Cloudflare, had implemented WAF rules to help protect customers from exploitation attempts against CVE-2025-55182.
ProjectDiscovery introduced a Nuclei template to detect vulnerable Next.js and React Server Components deployments using crafted multipart/form-data requests and RSC-specific fingerprinting.
Following the React2Shell disclosure, researchers identified two more React Server Components issues: CVE-2025-55184, a denial-of-service flaw, and CVE-2025-55183, a source code exposure flaw affecting React 19 and App Router-based frameworks.
Akamai said it deployed an Adaptive Security Engine Rapid Rule to protect customers against exploitation of CVE-2025-55182, while emphasizing that vendor patching remained the primary mitigation.
Cloudflare proactively deployed WAF protections to help shield customers from exploitation of the React Server Components vulnerability while patching efforts were underway.
Next.js published CVE-2025-66478 to track its downstream exposure to the React flaw and released patched versions for affected App Router branches, noting no workaround exists.
The React team publicly disclosed CVE-2025-55182, a critical unauthenticated RCE in React Server Components, and released fixed versions 19.0.1, 19.1.2, and 19.2.1 for affected react-server-dom packages.
Deno implemented a runtime-level mitigation to protect Deno Deploy, Deno Deploy Classic, and subhosting from the React Server Functions exploit ahead of public disclosure.
Researcher Lachlan Davidson responsibly disclosed the React Server Components remote code execution flaw to Meta. Deno states the report was made on 2025-11-29 and that disclosure coordination involved Meta and Vercel.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
50 references tracked. Mallory keeps watching after this page renders.
blog.polyswarm.io
Open sourcecsoonline.com
Open sourcecybersecuritynews.com
Open sourcemicrosoft.com
Open sourcecyber.gc.ca
Open sourcerapid7.com
Open sourceimperva.com
Open sourcearcticwolf.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.