Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
React2Shell (CVE-2025-55182): A Log4Shell Moment for the Front End Ecosystem (datadoghq.com)
4 points by birdculture 5 hours ago | hide | past | favorite | 1 comment




This seems like a really big deal! It affects NextJS 15, even if the codebase isn't using Server Components, has a CVSS vulnerability score of 10/10, and there are known exploits in the wild. Can't see this doing wonders to the reputation of React Server Components.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: