React2Shell (CVE-2025-55182)

React Server Components Remote Code Execution Vulnerability, CVSSv3 score of 10.0.

Discovery

  • Use extension ActiveScan++ (v2.0.8) in Burp Suite to detect React2Shell. Runs automatically as part of the active scanning.
  • Use this Bamdba in Burp Suite.

Reference