← Back to Feed

CVE-2025-55182: Critical Vulnerability, React2Shell, Allows for Unauthenticated RCE

CVE-2025-55182

December 5, 2025 · Cybereason · Severity: CRITICAL

<img src="https://www.cybereason.com/hubfs/BLOG_Images_Template_v2%20%2836%29.

Key Takeaways

  • Check the Cybereason blog for additional updates. Cybereason is continuing to investigate.
  • KEY TAKEAWAYS Critical vulnerability discovered on December 3, 2025 in React that could allow for unauthenticated remote code execution.
☕ Buy a Coffee