Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
JEFAZO-CVE-2025-55182-Checker — Escáner pasivo de seguridad para CVE-2025-55182 que identifica indicadores públicos asociados a Next.js y React Server Components. Realiza validaciones seguras, analiza cabeceras y rutas, y proporciona una evaluación de exposición basada en evidencias sin explotación. | Kitploit
Tools/GitHubGitHub/alejandro609x/jefazo-cve-2025-55182-checker
ReconnaissanceStatic AnalysisVulnerability ScannersInformation GatheringWeb SecurityLearning & Education
GitHubalejandro609x/jefazo-cve-2025-55182-checker

JEFAZO-CVE-2025-55182-Checker

Escáner pasivo de seguridad para CVE-2025-55182 que identifica indicadores públicos asociados a Next.js y React Server Components. Realiza validaciones seguras, analiza cabeceras y rutas, y proporciona una evaluación de exposición basada en evidencias sin explotación.

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
View Repository
1133 months agoNot yet reviewed

JEFAZO-CVE-2025-55182-Checker

Deployment

Deployment

Description

JEFAZO-CVE-2025-55182-Checker is a passive analysis tool designed to identify indicators related to CVE-2025-55182 in applications built with Next.js and React Server Components (RSC).

The tool performs safe and non-intrusive checks, without attempting to exploit the vulnerability or execute code on the target system.


Features

  • Passive exposure analysis.
  • Detection of Next.js indicators.
  • Detection of React Server Components (RSC).
  • HTTP header analysis.
  • Validation of common framework routes.
  • Evidence-based scoring system.
  • Colored terminal output.
  • No exploitation or modifications performed.

What is it for?

This tool helps administrators, developers, and security analysts to identify potential exposure indicators related to CVE-2025-55182.

It provides a quick initial assessment before carrying out more in-depth audits or manual reviews of configuration and versions.


How does it work?

The scanner performs the following checks:

  1. Retrieves the HTTP headers of the target site.

  2. Searches for indicators such as:

    • RSC
    • Next-Router-State-Tree
    • Next-Router-Prefetch
    • Next-Router-Segment-Prefetch
    • X-Powered-By: Next.js
  3. Analyzes the HTML content for public Next.js artifacts.

  4. Checks common routes used by the framework.

  5. Calculates a score based on the indicators found.

  6. Generates a confidence rating (Low, Medium, or High).


Installation

Clone the repository:

git clone https://github.com/Alejandro609x/JEFAZO-CVE-2025-55182-Checker.git
cd JEFAZO-CVE-2025-55182-Checker

Install dependencies:

pip install -r requirements.txt

Or manually:

pip install requests colorama urllib3

Usage

Run the program:

python3 can_cve_2025_55182.py

Enter the URL when prompted:

Introduce la URL objetivo: https://ejemplo.com

Interpreting results

No clear signs

Not enough evidence was found to associate the target with relevant Next.js or React Server Components indicators.

Moderate signs

Some indicators were detected suggesting the presence of potentially related technologies.

Possibly exposed

Multiple indicators compatible with Next.js and React Server Components were detected.

Important: This result does not confirm the existence of an exploitable vulnerability. It is recommended to verify versions, configurations, and apply the corresponding patches.


Example output

======================================================
RESULTADO
======================================================

ESTADO: POSIBLEMENTE EXPUESTO

CONFIDENCIA: ALTA (10 puntos)

Se detectaron múltiples indicadores compatibles
con Next.js y React Server Components.
Download Tool