Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog
Консоль
Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog

exploitDog

ΠšΠΎΠ»ΠΈΡ‡Π΅ΡΡ‚Π²ΠΎ 3

ΠšΠΎΠ»ΠΈΡ‡Π΅ΡΡ‚Π²ΠΎ 3

redhat Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ

CVE-2025-55183

8 мСсяцСв Π½Π°Π·Π°Π΄

An information leak vulnerability exists in specific configurations of React Server Components versions 19.0.0, 19.0.1 19.1.0, 19.1.1, 19.1.2, 19.2.0 and 19.2.1, including the following packages: react-server-dom-parcel, react-server-dom-turbopack, and react-server-dom-webpack. A specifically crafted HTTP request sent to a vulnerable Server Function may unsafely return the source code of any Server Function. Exploitation requires the existence of a Server Function which explicitly or implicitly exposes a stringified argument.

CVSS3: 5.3
EPSS: Π‘Ρ€Π΅Π΄Π½ΠΈΠΉ
nvd Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ

CVE-2025-55183

8 мСсяцСв Π½Π°Π·Π°Π΄

An information leak vulnerability exists in specific configurations of React Server Components versions 19.0.0, 19.0.1 19.1.0, 19.1.1, 19.1.2, 19.2.0 and 19.2.1, including the following packages: react-server-dom-parcel, react-server-dom-turbopack, and react-server-dom-webpack. A specifically crafted HTTP request sent to a vulnerable Server Function may unsafely return the source code of any Server Function. Exploitation requires the existence of a Server Function which explicitly or implicitly exposes a stringified argument.

CVSS3: 5.3
EPSS: Π‘Ρ€Π΅Π΄Π½ΠΈΠΉ
github Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ

GHSA-925w-6v3x-g4j4

8 мСсяцСв Π½Π°Π·Π°Π΄

Source Code Exposure Vulnerability in React Server Components

CVSS3: 5.3
EPSS: Π‘Ρ€Π΅Π΄Π½ΠΈΠΉ

УязвимостСй Π½Π° страницу

Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡ‚ΡŒ
CVSS
EPSS
ΠžΠΏΡƒΠ±Π»ΠΈΠΊΠΎΠ²Π°Π½ΠΎ
redhat Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ
CVE-2025-55183

An information leak vulnerability exists in specific configurations of React Server Components versions 19.0.0, 19.0.1 19.1.0, 19.1.1, 19.1.2, 19.2.0 and 19.2.1, including the following packages: react-server-dom-parcel, react-server-dom-turbopack, and react-server-dom-webpack. A specifically crafted HTTP request sent to a vulnerable Server Function may unsafely return the source code of any Server Function. Exploitation requires the existence of a Server Function which explicitly or implicitly exposes a stringified argument.

CVSS3: 5.3
62%
Π‘Ρ€Π΅Π΄Π½ΠΈΠΉ
8 мСсяцСв Π½Π°Π·Π°Π΄
nvd Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ
CVE-2025-55183

An information leak vulnerability exists in specific configurations of React Server Components versions 19.0.0, 19.0.1 19.1.0, 19.1.1, 19.1.2, 19.2.0 and 19.2.1, including the following packages: react-server-dom-parcel, react-server-dom-turbopack, and react-server-dom-webpack. A specifically crafted HTTP request sent to a vulnerable Server Function may unsafely return the source code of any Server Function. Exploitation requires the existence of a Server Function which explicitly or implicitly exposes a stringified argument.

CVSS3: 5.3
62%
Π‘Ρ€Π΅Π΄Π½ΠΈΠΉ
8 мСсяцСв Π½Π°Π·Π°Π΄
github Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ
GHSA-925w-6v3x-g4j4

Source Code Exposure Vulnerability in React Server Components

CVSS3: 5.3
62%
Π‘Ρ€Π΅Π΄Π½ΠΈΠΉ
8 мСсяцСв Π½Π°Π·Π°Π΄

УязвимостСй Π½Π° страницу

exploitDog - КомплСксноС Ρ€Π΅ΡˆΠ΅Π½ΠΈΠ΅ для обнаруТСния, ΠΎΡ†Π΅Π½ΠΊΠΈ ΠΈ устранСния уязвимостСй.