React Server CVE-2025-55182

DrWizzle

Verified User
Joined
Aug 8, 2021
Messages
360
Location
Here
Don't know if this has been mentioned, but for you guys who may have customers using react server components, this also affects next.js. Apparently this is a biggy and Hetzner are informing every one of their customers that are running npm on their servers. I'm not using it for any projects at present but for those of you that are, it's advised to update immediately.

 
Yes, i've seen reports of guys getting slammed with DDOS notices as attacks have come from their server without them knowing. Seems this vulnerability is linked.
 
Back
Top