{"repo":"xcanwin/CVE-2025-55182-React-RCE","free":true,"listed":false,"github":"https://github.com/xcanwin/CVE-2025-55182-React-RCE","clone":"git clone https://github.com/xcanwin/CVE-2025-55182-React-RCE.git","description":"[漏洞复现] 全球首款基于RSC特性能绕过WAF检测的CVE-2025-55182 React Server RCE 漏洞 EXP。","language":"Python","stars":15,"topics":["react","cve-2025-55182","dify","exp","nextjs"],"license":null,"category":"saas-starters-boilerplates","readme_excerpt":"CVE-2025-55182-React-RCE 项目简介与原理 - 全球首款基于RSC特性能绕过WAF检测的CVE-2025-55182 React Server RCE 漏洞 EXP。 - The world’s first CVE‑2025‑55182 React Server RCE exploit that can bypass WAF detection by leveraging RSC-specific features. - 实现React Server默认环境RCE。 - 新增原创EXP，支持绕过WAF场景的打法。原理：getOutlinedModel中可跨块+逐级引用JSON。 - 提供精简到极致的复现环境。 EXP 的优点 - 无需 、 即可RCE。 - 不会出现WAF经常拦截的关键词 、 、 。 - 一份EXP兼容默认配置的原生React Server、Next.js、Dify环境。 复现环境 的优点 - 极致精简。 - 快速搭建。 漏洞简介 信息 内容 --- --- 漏洞名称 React Server RCE 漏洞编号 CVE-2025-55182 风险等级 高危 漏洞类型 RCE 利用难度 低 影响版本 - React 影响版本 == 19.0.0 - React 影响版本 == 19.0.1 - React 影响版本 == 19.1.0 - React 影响版本 == 19.2.0 - react-server-dom-webpack包 影响版本 == 19.0.0、19.0.1、19.1.0、19.1.1、19.2.0 - react-server-dom-parcel包 影响版本 == 19.0.0、19.0.1、19.1.0、19.1.1、19.2.0 - react-server-dom-turbopack包 影响版本 == 19.0.0、19.0.1、19.1.0、19.1.1、19.2.0 - Next.js 影响版本 = 14.3.0-canary.77 - Next.js 15.0.0 <= 影响版本 < 15.0.5 - Next.js 15.1.0 <= 影响版本 < 15.1.9 - Next.js 15.2.0 <= 影响版本 < 15.2.6 - Next.js 15.3.0 <= 影响版本 < 15.3.6 - Next.js 15.4.0 <= 影响版本 < 15.4.8 - Next.js 15.5.0 <= 影响版本 < 15.5.7 - Next.js 16.0.0 <= 影响版本 < 16.0.7 - Dify 1.1.2 <= 影响版本 < 1.10.1-fix.1 EXP 1 可用于绕过WAF场景 + 默认场景: 复现 1 1. 服务端环境： 2. 服务端下载并安装 react-server-dom-webpack 所需依赖： 成功搭建服务： 3. 客户端使用EXP 复现 2 1. 服务端环境： 2. 服务端下载并安装 Next.js 所需依赖： 成功搭建服务： 3. 客户端使用EXP（同上）","default_branch":null,"files":null,"tree":[],"storefront":"/r/xcanwin","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/xcanwin/CVE-2025-55182-React-RCE/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}