CVE-2025-55182 and CVE-2025-66478 (“React2Shell”): All you need to know – UPDATED
IMPORTANT UPDATE: React2Shell Continues to Attack Cloud Infrastructure (Dec 9th, 2025) JFrog Security Research continues to track the React2Shell vulnerability. Recent developments include the original POC from the researcher who found this vulnerability. This POC shows the simplicity of exploiting this CVE and reflects the real severity and impact of this CVE. (Dec 12th, 2025) …