Vercel ChangelogDec 5, 2025, 1:00 PMimportant 85

React2Shell 安全公告:Vercel 發布防範指南與安全資源

Original: React2Shell Security Bulletin

Vercel has recently published an official Security Bulletin addressing the "React2Shell" security threat, providing a series of practical…

Vercel 針對近期受關注的 React2Shell 安全威脅發布官方公告。該漏洞主要影響 React 伺服器端渲染(SSR)與 Server Components 環境,可能導致遠端代碼執行(RCE)。Vercel 提供了包含 WAF 規則配置、核心套件升級以及程式碼審查指引等資源,幫助開發者保護部署在 Vercel 上的 Next.js 與 React 專案。

Vercel has recently published an official Security Bulletin addressing the "React2Shell" security threat, providing a series of practical protective resources aimed at helping developers protect their React and Next.js applications from this potential vulnerability.

Full summary

Free shows the 3-line summary; Pro unlocks the full deep summary (~300 words) so you never have to click through.

See Pro plans →

Want the original English / full article?

Read on Vercel Changelog →

Summaries are AI-generated; the original article is authoritative.