Critical RCE Vulnerability CVE-2025-11953 Puts React Native Developers at Risk
jfrog.com | 研究 | CVE-2025-11953 | #rce | #supply-chain | #npm | #jfrog | #vulnerability-disclosure | #react-native | #cve-2025-11953
摘要
JFrog 披露 CVE-2025-11953(CVSS 9.8):@react-native-community/cli 开发服务器存在未认证远程命令执行,攻击者可执行任意系统命令;叠加另一缺陷后开发服务器将暴露于网络攻击。
- 发布时间
- 收录时间
Skip to content