China-linked state-backed hacking groups rapidly exploited a critical React RCE (CVE-2025-55182) within hours of disclosure, targeting vulnerable server-side packages.
Cloudflare blames Friday outage on borked React2shell fix
Cloudflare intentionally took down its network to patch the critical React2Shell vulnerability, causing a major outage while denying any cyber attack caused it.
Cloudflare fixes second outage in a month | Computer Weekly
Cloudflare briefly lost Dashboard and API availability due to a WAF parsing change deployed to mitigate a critical React Server Components RCE (React2Shell) vulnerability, now resolved.