Una moderna applicazione web vulnerabile in Next.js a tema portale di notizie/blog per CVE-2025-55182 (React) e CVE-2025-66478 (Next.js) per apprendere, rilevare e esercitarsi in sicurezza con React2Shell. Esegue React 19.0.0 e Next.js 15.0.3 senza patch.
Una moderna applicazione web Next.js a tema portale di notizie/blog per CVE-2025-55182 (React) e CVE-2025-66478 (Next.js) per imparare, rilevare ed esercitare in sicurezza React2Shell. Esegue React 19.0.0 e Next.js 15.0.3 senza patch.
# 1. Avvia il laboratorio
docker-compose up -d
# 2. Apri l'app
http://localhost:3000
# 3. Ferma quando hai finito
docker-compose down
Esecuzione manuale in stile produzione:
npm install --legacy-peer-deps
npm run build
npm start
# Visita http://localhost:3000
Sviluppo con hot reload:
npm install --legacy-peer-deps
npm run dev
Note:
Comandi utili:
docker-compose ps
docker-compose logs -f hi-react2shell-tribune
docker-compose restart
docker-compose build --no-cache && docker-compose up -d
Versioni interessate rilevanti:
Questo progetto è concesso in licenza sotto Apache License 2.0. Vedi LICENSE per i dettagli.
📬 Contattaci: [email protected]