React-server-dom-turbopack — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
December 4, 2025
Last Seen
December 4, 2025

React-server-dom-turbopack is a React ecosystem platform that enables server-side rendering of React components using the Turbopack bundler.

Overview

React-server-dom-turbopack is a React ecosystem platform that enables server-side rendering of React components using the Turbopack bundler. Its significance in cybersecurity arises from a disclosed vulnerability (CVE-2025-55182) affecting React and Next.js, which can impact deployments that rely on this stack and requires timely patching and monitoring.

Related Threat Clusters

  • Critical React Flaw CVE-2025-55182 Exposes Major Security Risks

    A maximum-severity vulnerability in the React JavaScript library, tracked as CVE-2025-55182, allows unauthenticated remote code execution on affected instances. Security researchers report that 39 percent of cloud…

    47 articles · Updated December 3, 2025

Recent Intelligence Reports

  • CVE-2025-55182 vulnerability in React and Next.js — Kaspersky · December 4, 2025

CVSS v3.1 Breakdown