Category: News

Active React2shell attacks puts thousands at risk
News

Active React2shell attacks puts thousands at risk

A new, highly dangerous bug called React2Shell was discovered in December 2025. This bug is in a popular tool (React Server Components) used by millions of websites and applications worldwide. As soon as it became public, hacking groups quickly began trying to break into vulnerable systems to steal data and install malware. What’s Happening? A critical security flaw (rated 10/10 for severity) that lets hackers run their own code on a website’s server just by sending a specially crafted web request. It affects React version 19 and Next.js versions 15 and 16. Who is Attacking? Shortly after the bug was

Read More »