Логотип exploitDog
bind:CVE-2025-55183
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-55183

Количество 2

Количество 2

nvd логотип

CVE-2025-55183

8 дней назад

An information leak vulnerability exists in specific configurations of React Server Components versions 19.0.0, 19.0.1 19.1.0, 19.1.1, 19.1.2, 19.2.0 and 19.2.1, including the following packages: react-server-dom-parcel, react-server-dom-turbopack, and react-server-dom-webpack. A specifically crafted HTTP request sent to a vulnerable Server Function may unsafely return the source code of any Server Function. Exploitation requires the existence of a Server Function which explicitly or implicitly exposes a stringified argument.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-925w-6v3x-g4j4

7 дней назад

Source Code Exposure Vulnerability in React Server Components

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-55183

An information leak vulnerability exists in specific configurations of React Server Components versions 19.0.0, 19.0.1 19.1.0, 19.1.1, 19.1.2, 19.2.0 and 19.2.1, including the following packages: react-server-dom-parcel, react-server-dom-turbopack, and react-server-dom-webpack. A specifically crafted HTTP request sent to a vulnerable Server Function may unsafely return the source code of any Server Function. Exploitation requires the existence of a Server Function which explicitly or implicitly exposes a stringified argument.

CVSS3: 5.3
1%
Низкий
8 дней назад
github логотип
GHSA-925w-6v3x-g4j4

Source Code Exposure Vulnerability in React Server Components

CVSS3: 5.3
1%
Низкий
7 дней назад

Уязвимостей на страницу