Max-severity vulnerability in React, Node.js patched, update ASAP (CVE-2025-55182)Help Net Security·Dec 4, 00:00 UTC · Dec 4, 2025VulnerabilityCVE-2025-55182CVE-2025-6647860
Critical React2Shell Vulnerability Under Active Exploitation by Chinese Threat ActorsRecorded Future·Dec 9, 00:00 UTC · Dec 9, 2025Vulnerability in the wildCVE-2025-5518260
Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal CredentialsThe Hacker News·Apr 2, 19:30 UTC · Apr 2, 2026VulnerabilityCVE-2025-5518260
Federal agencies now only have one more day to patch React2Shell bugThe Record·Dec 11, 19:54 UTC · Dec 11, 2025Vulnerability in the wildCVE-2025-5518260
Attacks on Kaspersky honeypots exploit CVE-2025Kaspersky Securelist·Dec 11, 07:30 UTC · Dec 11, 2025Exploit / PoC in the wildCVE-2025-5518260
Critical RSC Bugs in React and Next.js Allow Unauthenticated Remote Code ExecutionThe Hacker News·Dec 4, 15:38 UTC · Dec 4, 2025VulnerabilityCVE-2025-55182CVE-2025-6647860
June 2026 CVE LandscapeRecorded Future·Jul 17, 00:00 UTC · Jul 17, 2026Ransomware in the wildCVE-2026-35616CVE-2026-25939CVE-2020-17103+53 CVEs60
December 2025 CVE Landscape: 22 Critical Vulnerabilities Mark 120% Surge, React2Shell Dominates Threat ActivityRecorded Future·Jan 13, 00:00 UTC · Jan 13, 2026Vulnerability in the wildCVE-2025-55182CVE-2025-20393CVE-2025-8110+1 CVEs60
React2Shell fallout spreads to sensitive targets as public exploits hit allCyberScoop·Dec 18, 16:12 UTC · Dec 18, 2025Ransomware in the wildCVE-2025-55182CVE-2025-55183CVE-2025-67779+1 CVEs60
UAT-10608: Inside a large-scale automated credential harvesting operation targeting web applicationsCisco Talos·Apr 2, 10:00 UTC · Apr 2, 2026Data breachCVE-2025-55182160
Vulnerability landscape in Q4 2025Kaspersky Securelist·Mar 6, 10:00 UTC · Mar 6, 2026Vulnerability in the wildCVE-2018-0802CVE-2017-11882CVE-2017-0199+7 CVEs160
React2Shell under attack: RondoDox Botnet spreads miners and malwareSecurity Affairs·Jan 1, 14:31 UTC · Jan 1, 2026MalwareCVE-2025-55182CVE-2024-3721CVE-2024-1285660
New EtherRAT backdoor surfaces in React2Shell attacks tied to North KoreaSecurity Affairs·Dec 10, 14:45 UTC · Dec 10, 2025MalwareCVE-2025-5518260
The Bug That Won't Die: 10 Years of the Same MistakeRecorded Future·Dec 9, 00:00 UTC · Dec 9, 2025Exploit / PoCCVE-2025-55182CVE-2025-66478CVE-2015-485260
Researchers track dozens of organizations affected by React2Shell compromises tied to China’s MSSThe Record·Dec 8, 16:31 UTC · Dec 8, 2025Exploit / PoC in the wildCVE-2025-5518260
AWS: China-linked threat actors weaponized React2Shell hours after disclosureSecurity Affairs·Dec 8, 13:37 UTC · Dec 8, 2025Threat actor in the wildCVE-2025-55182CVE-2025-133860
Developers scramble as critical React flaw threatens major appsCyberScoop·Dec 3, 19:23 UTC · Dec 3, 2025Vulnerability in the wildCVE-2025-55182CVE-2025-6647860
July 2026 CVE LandscapeRecorded Future·Aug 7, 00:00 UTC · Aug 7, 2026Ransomware in the wildCVE-2025-3248CVE-2008-4128CVE-2017-17215+78 CVEs160
RondoDox botnet expands arsenal targeting 174 flaws, and hits 15,000 daily exploit attemptsSecurity Affairs·Mar 17, 15:02 UTC · Mar 17, 2026Malware in the wildCVE-2023-1389CVE-2024-3721CVE-2024-12856+2 CVEs60
RondoDox Botnet Exploits Critical React2Shell Flaw to Hijack IoT Devices and Web ServersThe Hacker News·Jan 1, 09:19 UTC · Jan 1, 2026MalwareCVE-2025-55182CVE-2023-1389CVE-2025-2489360
U.S. CISA adds a Meta React Server Components flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Dec 31, 19:34 UTC · Dec 31, 2025Exploit / PoC in the wildCVE-2025-5518260
React2Shell Vulnerability Actively Exploited to Deploy Linux BackdoorsThe Hacker News·Dec 17, 07:26 UTC · Dec 17, 2025Vulnerability in the wildCVE-2025-55182CVE-2025-29927CVE-2025-6647860
New React RSC Vulnerabilities Enable DoS and Source Code ExposureThe Hacker News·Dec 12, 18:36 UTC · Dec 12, 2025VulnerabilityCVE-2025-55182CVE-2025-55184CVE-2025-67779+1 CVEs60
Attacks pinned to critical React2Shell defect surge, surpass 50 confirmed victimsCyberScoop·Dec 11, 17:17 UTC · Dec 11, 2025Ransomware in the wildCVE-2025-5518260
Critical React2Shell Flaw Added to CISA KEV After Confirmed Active ExploitationThe Hacker News·Dec 9, 06:18 UTC · Dec 9, 2025Exploit / PoC in the wildCVE-2025-5518260
⚡ Weekly Recap: USB Malware, React2Shell, WhatsApp Worms, AI IDE Bugs & MoreThe Hacker News·Dec 9, 04:05 UTC · Dec 9, 2025MalwareCVE-2025-55182CVE-2025-6389CVE-2025-66516+19 CVEs60
React2Shell Under Active Exploitation by ChinaInfosecurity Magazine·Dec 8, 11:40 UTC · Dec 8, 2025Exploit / PoC in the wildCVE-2025-5518260
Week in review: React, Node.js flaw patched, ransomware intrusion exposes espionage footholdHelp Net Security·Dec 7, 00:00 UTC · Dec 7, 2025RansomwareCVE-2025-48633CVE-2025-48572CVE-2025-5518260
Attackers hit React defect as researchers quibble over proofCyberScoop·Dec 6, 17:14 UTC · Dec 6, 2025Ransomware in the wildCVE-2025-55182CVE-2025-6647860
Chinese hackers exploiting React2Shell bug impacting countless websites, Amazon researchers sayThe Record·Dec 5, 16:22 UTC · Dec 5, 2025Exploit / PoC in the wildCVE-2025-5518260
Admins and defenders gird themselves against maximumArs Technica · Security·Dec 3, 23:16 UTC · Dec 3, 2025VulnerabilityCVE-2025-55182CVE-2025-6647847
Dysphoria Botnet Uses Blockchain Domains to Hide C2 InfrastructureSecurity Affairs·Jul 28, 19:08 UTC · Jul 28, 2026MalwareCVE-2025-55182CVE-2017-1721535
FBI: TeamPCP Compromised Dev Tools to Steal Cloud CredentialsSecurity Affairs·Jul 4, 16:08 UTC · Jul 4, 2026RansomwareCVE-2026-33634CVE-2026-48027CVE-2026-45321+1 CVEs60
New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit ReposThe Hacker News·Jul 2, 07:29 UTC · Jul 2, 2026Exploit / PoCCVE-2025-64446CVE-2025-55182CVE-2025-14847+5 CVEs160
New SharkLoader Malware Deploys Cobalt Strike in StrikeShark CyberattacksThe Hacker News·Jun 27, 12:06 UTC · Jun 27, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs60
StrikeShark: a new campaign involving a custom SharkLoader and Cobalt Strike BeaconKaspersky Securelist·Jun 24, 14:23 UTC · Jun 24, 2026MalwareCVE-2021-26855CVE-2023-32315CVE-2024-36401+10 CVEs47
What’s in the container? Analyzing vulnerabilities, risks and protection with Kaspersky Container Security and the KIRA AI assistantKaspersky Securelist·May 29, 07:00 UTC · May 29, 2026VulnerabilityCVE-2025-55182CVE-2023-4911CVE-2021-4034+3 CVEs60
At Mythos Speed: A Defender's Playbook for the AI Vulnerability Surge in 2026Recorded Future·May 21, 00:00 UTC · May 21, 2026Vulnerability in the wildCVE-2025-5518260
AI shrinks vulnerability exploitation window to hoursHelp Net Security·May 18, 00:00 UTC · May 18, 2026Vulnerability in the wildCVE-2025-5518260
PCPJack Credential Stealer Exploits 5 CVEs to Spread WormThe Hacker News·May 7, 17:45 UTC · May 7, 2026MalwareCVE-2025-55182CVE-2025-29927CVE-2026-1357+2 CVEs35