Where
-Infinity
0

npm/react-server-dom-parcelMultiple denial of service vulnerabilities exist in React Server Components, affecting the following…

Risk 31
Severity
7.5
EPSS
0.90%
First published (updated )

The RegisterReact2Shell vuln exploited by China, Iran, Google warns

First published (updated )

Vercel Next.js Node.jsadditional act vulnerabilities (CVE-2025-55183, CVE-2025-55184, CVE-2025-67779)

Risk 47
Severity
7.5
First published (updated )

Vercel Next.js Node.jsadditional act vulnerabilities (CVE-2025-55183, CVE-2025-55184, CVE-2025-67779)

Risk 47
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Vercel Next.js Node.jsadditional act vulnerabilities (CVE-2025-55183, CVE-2025-55184, CVE-2025-67779)

Risk 29
Severity
5.3
First published (updated )

Vercel Next.js Node.jsMeta React Server Components Remote Code Execution Vulnerability

Risk 100
Severity
10
First published (updated )

Facebook ProxygenSending an HTTP request/response body with greater than 2^31 bytes triggers an infinite loop in prox…

Risk 27
Severity
5.3
First published (updated )

Facebook mvfstA heap-buffer-overflow vulnerability is possible in mvfst via a specially crafted message during a Q…

Risk 59
Severity
8.1
First published (updated )

ZDNet184 million passwords leaked across Facebook, Google, more: What to know about this data breach

First published (updated )
News
ZDNet
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ZDNet184 million passwords for Google, Microsoft, Facebook, and more leaked in massive data breach

First published (updated )
News
ZDNet

ZDNetMassive data breach exposes 184 million passwords for Google, Microsoft, Facebook, and more

First published (updated )
News
ZDNet

Below BelowBelow: World Writable Dictory in /var/log/below Allows Local Privilege Escalation (CVE-2025-27591)

Risk 53
Severity
7.8
EPSS
0.02%
First published (updated )

Facebook React 19.0End of life details

First published (updated )

Facebook React 19.0End of life details

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Facebook React 19End of life details

First published (updated )

Facebook Chat PluginFacebook Chat Plugin <= 1.5 - Missing Capabilities Check

Risk 52
Severity
7.4
First published (updated )

Facebook ThriftNull Pointer Dereference

Risk 32
Severity
5.3
First published (updated )

Facebook ThriftUse After Free

Risk 70
Severity
7.5
First published (updated )

gh:facebook/rocksdb v9.5.2 - SupplyChainAttackPoC for Meta BB

Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Facebook React 18.3End of life details

First published (updated )

Facebook React 18.3End of life details

First published (updated )

ZDNetHijacked Facebook Pages are pushing fake AI services to steal your data

First published (updated )
News
ZDNet

The RegisterMeta accused of snarfing people's Snapchat data via traffic decryption

First published (updated )

Facebook Meta Spark StudioPrior to v176, when opening a new project Meta Spark Studio would execute scripts defined inside of …

Risk 51
Severity
7.8
EPSS
0.06%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Facebook KatranKatran could disclose non-initialized kernel memory as part of an IP header. The issue was present f…

Risk 43
Severity
7.5
First published (updated )

npm/react-devtools-coreThe React Developer Tools extension registers a message listener with window.addEventListener('messa…

Risk 29
Severity
6.5
EPSS
0.09%
First published (updated )

CVE-2023-44487: HTTP/2 Rapid Reset attack against many implementations

First published (updated )

Apache Tomcat- Rapid Reset HTTP/2 vulnerability

Risk 65
Severity
7.5
First published (updated )

Facebook Tac PlusInput Validation

Risk 86
Severity
9.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203