Skip to content

CVE-2025-61686

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
January 12, 2026
Last Seen
January 12, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Security researchers have identified critical vulnerabilities in React Router that enable attackers to access or modify server files through directory traversal. These flaws impact multiple packages within the React Router ecosystem and have a CVSS v3 score of 9.8, indicating critical severity.

Public Exploits

Checking GitHub for proof-of-concept code…