Google Alerts on Exploitation of React2Shell Vulnerability by Hacker Groups

Google Alerts on Exploitation of React2Shell Vulnerability by Hacker Groups

First seen 13 Dec 2025, 14:50 UTC CyberpressCybersecuritynewsFeeds.FeedburnerSecurityweekSecurityboulevard 38.2

Article Content

Browse articles
ThreatCluster

Google Threat Intelligence Group has reported the exploitation of a critical security flaw in React Server Components, identified as React2Shell (CVE-2025-55182). This vulnerability enables attackers to remotely control servers without authentication. Multiple hacker groups are actively using this flaw to deploy malware since its disclosure on December 3, 2025.