National Cyber Warfare Foundation (NCWF)

Hackers Exploit Metro4Shell RCE Flaw in React Native CLI npm Package


0 user ratings
2026-02-03 14:59:10
milo
Blue Team (CND) , Attacks
Threat actors have been observed exploiting a critical security flaw impacting the Metro Development Server in the popular "@react-native-community/cli" npm package.
Cybersecurity company VulnCheck said it first observed exploitation of CVE-2025-11953 (aka Metro4Shell) on December 21, 2025. With a CVSS score of 9.8, the vulnerability allows remote unauthenticated attackers to execute arbitrary



Source: TheHackerNews
Source Link: https://thehackernews.com/2026/02/hackers-exploit-metro4shell-rce-flaw-in.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)
Attacks



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.