Skip to content

v0.1.0

Latest

Choose a tag to compare

@j0lt-github j0lt-github released this 11 Dec 22:33
· 5 commits to main since this release

Summary

  • Initial public release of react2shellburp for CVE-2025-55182 (React Server Components RCE).

Features

  • Active and passive scan checks: detects RSC endpoints, confirms exploitation via X-Action-Redirect, optional Burp Collaborator OOB.
  • UI tab for manual scans with safe digest mode and PoC redirect mode; Windows/Unix payload toggle, custom headers, redirect handling.
  • Context menu integration to load or scan selected requests; findings appear in Target/Issue Activity.

Build

  • Artifact: build/libs/react2shellburp-0.1.0.jar