A new critical vulnerability called React2Shell (CVE-2025-55182) has been quickly exploited by Chinese state-sponsored groups, highlighting the rapid weaponization cycle. Immediate patching is urged to prevent remote code execution attacks in React and Next.js applications. #React2Shell #CVE-2025-55182 #AWS #ChinaThreatActors
Keypoints
- React2Shell (CVE-2025-55182) affects React 19.x and Next.js 15.x/16.x, enabling RCE.
- Chinese state-sponsored hacking groups like Earth Lamia and Jackpot Panda exploited the vulnerability within hours of disclosure.
- Threat actors use volume-based tactics, deploying flawed PoC exploits from GitHub to maximize attack chances.
- AWS has automated protections but emphasizes the importance of immediate patching for affected environments.
- The rapid exploitation underscores how quickly cyber threats can escalate into national security concerns.
Read More: https://thecyberexpress.com/react2shell-flaw-exploited-by-chinese-groups/