‘React2Shell’ Flaw Exploited by China-Nexus Groups Within Hours of Disclosure, AWS Warns

‘React2Shell’ Flaw Exploited by China-Nexus Groups Within Hours of Disclosure, AWS Warns

A new critical vulnerability called React2Shell (CVE-2025-55182) has been quickly exploited by Chinese state-sponsored groups, highlighting the rapid weaponization cycle. Immediate patching is urged to prevent remote code execution attacks in React and Next.js applications. #React2Shell #CVE-2025-55182 #AWS #ChinaThreatActors

Keypoints

  • React2Shell (CVE-2025-55182) affects React 19.x and Next.js 15.x/16.x, enabling RCE.
  • Chinese state-sponsored hacking groups like Earth Lamia and Jackpot Panda exploited the vulnerability within hours of disclosure.
  • Threat actors use volume-based tactics, deploying flawed PoC exploits from GitHub to maximize attack chances.
  • AWS has automated protections but emphasizes the importance of immediate patching for affected environments.
  • The rapid exploitation underscores how quickly cyber threats can escalate into national security concerns.

Read More: https://thecyberexpress.com/react2shell-flaw-exploited-by-chinese-groups/