React Router Flaw Exposes Web Apps to Cache Poisoning & WAF Bypass Attacks

Post Reply
Shane1145
Posts: 1729
Joined: Wed Sep 25, 2024 2:31 pm

React Router Flaw Exposes Web Apps to Cache Poisoning & WAF Bypass Attacks

Post by Shane1145 »

A critical security vulnerability, CVE-2025-31137, has been identified in React Router, a popular library used by millions of developers for managing routing in React applications.

Security researchers from zhero_web_security discovered this flaw, which affects both React Router 7 and Remix 2 frameworks when using the Express adapter. It could potentially expose web applications to cache poisoning and web application firewall (WAF) bypass attacks.


https://cybersecuritynews.com/react-rou ... -web-apps/
Post Reply