← Back to Feed
CVE-2025-55182: Critical Vulnerability, React2Shell, Allows for Unauthenticated RCE
CVE-2025-55182
December 5, 2025 · Cybereason · Severity: CRITICAL
<img src="https://www.cybereason.com/hubfs/BLOG_Images_Template_v2%20%2836%29.
Key Takeaways
- Check the Cybereason blog for additional updates. Cybereason is continuing to investigate.
- KEY TAKEAWAYS Critical vulnerability discovered on December 3, 2025 in React that could allow for unauthenticated remote code execution.