Threat actors are exploiting the Metro4Shell React Native vulnerability to deploy malware on Linux and Windows systems.
Active attacks exploit Metro4Shell (CVE-2025-11953) in React Native CLI to execute commands and deploy Rust malware.
Attackers are actively exploiting a critical vulnerability in React Native's Metro server to infiltrate development ...
A widely popular npm package carried a critical severity vulnerability that allowed threat actors to, in certain scenarios, run malicious commands, experts have warned. Cybersecurity researchers from ...
Hackers are targeting developers by exploiting the critical vulnerability CVE-2025-11953 in the Metro server for React Native to deliver malicious payloads for Windows and Linux.
When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works. A widely popular npm package carried a critical severity vulnerability that allowed threat actors ...