Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

订阅源联系隐私© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
react2shell-scanner — 检测 React Server Components 中的 CVE-2025-55182 (React2Shell) RCE 漏洞。快速、准确的扫描器,零误报。 | Kitploit
工具/GitHubGitHub/nxgn-kd01/react2shell-scanner
漏洞扫描器代码分析漏洞利用Web应用程序漏洞利用DevSecOps供应链安全
GitHubnxgn-kd01/react2shell-scanner

react2shell-scanner

检测 React Server Components 中的 CVE-2025-55182 (React2Shell) RCE 漏洞。快速、准确的扫描器,零误报。

查看仓库
3119个月前尚未审核

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

🚨 React2Shell 扫描器

React 服务端组件中的 CVSS 10.0 RCE。你的 React 19 应用存在漏洞吗?

用于检测 CVE-2025-55182(React2Shell)的快速、精准扫描器——这是一个已被在野利用的严重远程代码执行漏洞。凭借智能的服务端组件检测实现零误报。

CVSS Score License: MIT GitHub Issues GitHub Stars PRs Welcome

🚨 关于 React2Shell(CVE-2025-55182)

React2Shell 是 React 服务端组件中的一个**最高严重级别(CVSS 10.0)**漏洞,允许未经身份验证的远程代码执行。攻击者可通过向服务端函数端点发送特制的 HTTP 请求来利用此漏洞。

关键信息:

  • 受影响: React 19.x、Next.js 14-16.x、react-router、waku、@parcel/rsc、expo
  • 攻击向量: 网络(无需身份验证)
  • 影响: 服务器完全失陷(RCE)
  • 披露时间: 2025 年 12 月 3 日
  • 可利用性: 默认配置下成功率接近 100%
  • 相关 CVE: CVE-2025-55184(DoS)、CVE-2025-55183(源码泄露)、CVE-2025-67779

⚠️ 重要说明: 只有 React 19.x 易受攻击。React 18.x 及更早版本不受影响。

⚡ 快速开始(30 秒)

# Option A: Node.js scanner (recommended - cross-platform, no dependencies)
npx react2shell-scanner /path/to/your/project

# Option B: Direct download and run
curl -sSL https://raw.githubusercontent.com/nxgn-kd01/react2shell-scanner/main/scan.js > scan.js
node scan.js /path/to/your/project

# Option C: Clone and run
git clone https://github.com/nxgn-kd01/react2shell-scanner.git
cd react2shell-scanner
node scan.js /path/to/your/project

数秒内出结果: 🚨 存在漏洞 | ⚠️ 存在警告 | ✅ 安全

📋 该扫描器检查什么

该工具执行智能漏洞检测:

1. React 版本分析 🔴 严重

  • 检测易受攻击的 React 19.0.0、19.1.0、19.1.1、19.2.0
  • 确认 React 18.x 应用是安全的(防止误报)
  • 识别 react-server-dom-* 包

2. 框架配置检查 🟡 警告

  • 扫描 Next.js 14.x-canary 至 16.x 版本
  • 检测 react-router、waku、@parcel/rsc、@vitejs/plugin-rsc、rwsdk、expo
  • 在需要时验证 React 19 依赖
  • 检测静态导出模式(服务端组件已禁用 = 安全)

3. 服务端函数检测 🔍 深度分析

  • 扫描源文件中的 'use server' 指令
  • 识别包含服务端函数的文件
  • 仅标记实际使用服务端组件的项目
  • 注意: 动态导入的服务端函数需要人工审查

4. 智能防误报 ✅ 精准

  • 仅标记同时具备 React 19 + 服务端组件 + 'use server' 指令的应用
  • 为边缘情况提供上下文说明
  • 解释项目为何存在/不存在漏洞

5. 多项目扫描 📁 规模化

  • 递归目录扫描
  • 检测 npm、yarn 和 pnpm 项目
  • 生成针对具体项目的修复命令

🎯 扫描器特性

属性值
CVE IDCVE-2025-55182
名称React2Shell
CVSS 评分10.0(严重)
CVSS 向量AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
攻击向量网络
身份验证无需
影响系统完全失陷

受影响版本

React:

  • 19.0.0、19.1.0、19.1.1、19.2.0

React Server DOM 包:

  • react-server-dom-webpack 19.0.0 - 19.2.0
  • react-server-dom-parcel 19.0.0 - 19.2.0
  • react-server-dom-turbopack 19.0.0 - 19.2.0

Next.js:

  • 14.0.0 至 14.2.34
  • 14.3.0-canary.0 至 14.3.0-canary.87
  • 15.0.0 至 15.0.6
  • 15.1.0 至 15.1.8
  • 15.2.0 至 15.2.5
  • 15.3.0 至 15.3.5
  • 15.4.0 至 15.4.7
  • 15.5.0 至 15.5.6
  • 16.0.0 至 16.0.9

其他受影响框架(根据 React 官方公告):

  • react-router 7.0.0 - 7.1.3
  • waku 0.21.0 - 0.21.5
  • @parcel/rsc 2.12.0 - 2.13.2
  • @vitejs/plugin-rsc 0.1.0 - 0.2.0
  • rwsdk(Redwood SDK)0.1.0 - 0.4.0
  • expo 52.0.0 - 52.0.9

已修补版本

React: 19.2.1 或更高版本

Next.js:

  • 14.2.35+、14.3.0-canary.88+
  • 15.0.7+、15.1.9+、15.2.6+、15.3.6+、15.4.8+、15.5.7+
  • 16.0.10+

其他框架:

  • react-router:7.1.4+
  • waku:0.21.6+
  • @parcel/rsc:2.13.3+
  • @vitejs/plugin-rsc:0.2.1+
  • rwsdk:0.4.1+
  • expo:52.0.10+

🚀 开始使用

前置要求

Node.js 扫描器(推荐):

  • Node.js 12+(跨平台,无依赖)

Bash 扫描器:

  • Bash 3.2+(macOS/Linux)
  • jq(JSON 处理器)
# Install jq (if using Bash scanner)
# macOS
brew install jq

# Ubuntu/Debian
sudo apt-get install jq

# RHEL/CentOS
sudo yum install jq

第 1 步:获取扫描器

选项 A:克隆(推荐普通用户)

# Clone the repository
git clone https://github.com/nxgn-kd01/react2shell-scanner.git
cd react2shell-scanner

# Make scripts executable
chmod +x scan.sh scan.js

选项 B:Fork(推荐贡献者)

# Fork on GitHub (click "Fork" button on repository page)
# Then clone your fork
git clone https://github.com/YOUR_USERNAME/react2shell-scanner.git
cd react2shell-scanner

# Make scripts executable
chmod +x scan.sh scan.js

# Add upstream remote to stay updated
git remote add upstream https://github.com/nxgn-kd01/react2shell-scanner.git

选项 C:直接下载

# Node.js version (recommended - cross-platform)
curl -O https://raw.githubusercontent.com/nxgn-kd01/react2shell-scanner/main/scan.js
chmod +x scan.js

# Bash version (Unix/Linux/macOS only)
curl -O https://raw.githubusercontent.com/nxgn-kd01/react2shell-scanner/main/scan.sh
chmod +x scan.sh

💻 使用方法

第 2 步:运行扫描器

🔍 扫描当前目录:

# Using Node.js (recommended)
node scan.js

# Using Bash
./scan.sh

📁 扫描指定项目:

node scan.js /path/to/project
./scan.sh /path/to/project

🗂️ 递归扫描(所有子目录):

node scan.js -r
./scan.sh -r

高级选项

JSON 输出(用于自动化):

node scan.js --json
./scan.sh --json

CI/CD 模式(存在漏洞时以退出码 1 退出):

node scan.js --ci
./scan.sh --ci

详细输出:

node scan.js -v
./scan.sh -v

组合选项:

node scan.js /path/to/projects -r --json --ci
./scan.sh /path/to/projects -r --json --ci

命令行选项

选项描述
-r, --recursive扫描所有子目录中的 Node.js 项目
-v, --verbose显示详细输出
--json以 JSON 格式输出结果
--ci若发现漏洞则以退出码 1 退出(用于 CI/CD)
-h, --help显示帮助信息

退出码

代码含义
0未发现漏洞
1发现漏洞(使用 --ci 标志时)
2发生扫描错误

示例

示例 1:扫描单个项目

$ node scan.js ~/my-react-app

╔════════════════════════════════════════════════════════════╗
║  CVE-2025-55182 Scanner (React2Shell)                      ║
╚════════════════════════════════════════════════════════════╝

Severity: CRITICAL (CVSS 10.0)
Description: Unauthenticated RCE in React Server Components

Scan Summary:
  Total projects: 1
  Vulnerable: 1
  Safe: 0

⚠ VULNERABLE PROJECTS FOUND:

1. /Users/user/my-react-app
   └─ react 19.0.0 → 19.2.1
   └─ next 15.0.3 → 15.0.5

   Fix command:
   $ cd /Users/user/my-react-app
   $ npm install [email protected] [email protected]

示例 2:使用 JSON 输出进行递归扫描

$ node scan.js ~/projects -r --json > results.json
{
  "vulnerability": "CVE-2025-55182",
  "severity": "CRITICAL",
  "cvss": 10.0,
  "scanned": 5,
  "vulnerable": 2,
  "results": [
    {
      "path": "/Users/user/projects/app1",
      "vulnerable": true,
      "packages": [
        {
          "name": "react",
          "version": "19.0.0",
          "fixVersion": "19.2.1"
        }
      ],
      "packageManager": "npm",
      "fixCommands": [
        "cd /Users/user/projects/app1",
        "npm install [email protected]"
      ]
    }
  ]
}

示例 3:CI/CD 集成

.github/workflows/security-scan.yml

name: CVE-2025-55182 Security Scan

on: [push, pull_request]

jobs:
  scan:
    runs-on: ubuntu-latest
    steps:
      - uses: actions/checkout@v3

      - name: Set up Node.js
        uses: actions/setup-node@v3
        with:
          node-version: '18'

      - name: Download CVE-2025-55182 Scanner
        run: |
          curl -O https://raw.githubusercontent.com/nxgn-kd01/cve-2025-55182-scanner/main/scan.js
          chmod +x scan.js

      - name: Scan for vulnerabilities
        run: node scan.js --ci

GitLab CI(.gitlab-ci.yml)

security-scan:
  stage: test
  image: node:18
  script:
    - curl -O https://raw.githubusercontent.com/nxgn-kd01/cve-2025-55182-scanner/main/scan.js
    - chmod +x scan.js
    - node scan.js --ci
  allow_failure: false

工作原理

该扫描器执行以下检查:

下载工具