React Native Metro Server is a technology platform tracked across 2 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed February 4, 2026; most recent activity February 6, 2026.
Hackers are exploiting the critical vulnerability CVE-2025-11953 in the Metro server for React Native, affecting developers on Windows, Linux, and macOS. The vulnerability allows unauthenticated attackers to execute…
A critical unauthenticated remote code execution (RCE) vulnerability, tracked as CVE-2025-11953 and known as Metro4Shell, has been identified in the React Native Metro development server. This vulnerability allows…