SEAL Security researchers warned that a critical React flaw fueled a surge in wallet-draining attacks on crypto websites.SEAL Security researchers warned that a critical React flaw fueled a surge in wallet-draining attacks on crypto websites.

React vulnerability sparks surge in crypto wallet drainers

2025/12/16 19:20
4 min read

Security Alliance (SEAL) have issued a warning that hackers are exploiting a serious React vulnerability to take over cryptocurrency websites. The SEAL stated that the vulnerability is fueling a surge of wallet-draining attacks that put users and platforms at immediate risk.

React Server Components (RSCs) feed the rendered result to clients (browsers) while operating on the server, rather than in the browser. However, the React team discovered a critical vulnerability with a maximum severity rating of 10 out of 10 in these packages.

Unpatched React servers risk remote code execution attacks

The React team issued an advisory stating that the vulnerability, known as React2Shell and listed as CVE-2025-55182, allows attackers to remotely execute code on compromised servers without requiring authentication. React’s maintainers reported the vulnerability on December 3 and assigned it the highest possible severity score.

According to the React team, CVE-2025-55182, affects the react-server-dom-parcel, react-server-dom-turbopack, and react-server-dom-webpack packages in versions 19.0, 19.1.0, 19.1.1, and 19.2.0.

SEAL urged that “All websites should review front-end code for any suspicious assets NOW.” The SEAL further stated that users should exercise caution when signing any crypto-related permission signature, as all websites, not just those using Web3 protocols, are vulnerable.

According to SEAL, all web development teams should scan hosts for CVE-2025-55182 and see if their code is unexpectedly loading assets from unknown hosts. Seal further instructed that teams should confirm the wallet displays the correct recipient on the signature signing request. The teams should also determine whether any of the “Scripts” loaded by their code are obfuscated JavaScript.

Shortly after the disclosure of CVE-2025-55182, SEAl found two more vulnerabilities in React Server Components while testing the previous patch. According to the React blog, SEAL disclosed CVE-2025-55184 and CVE-2025-67779 (CVSS 7.5), which are identified as Denial of Service and High Severity vulnerabilities. Next, SEAL disclosed CVE-2025-55183 (CVSS 5.3) which the researchers identified as Source Code Exposure and Medium Severity.

The React team advised that all websites should upgrade immediately due to the seriousness of the recently revealed vulnerabilities.

According to JS’s advisory, the denial-of-service vulnerability, identified as CVE-2025-55184, allows attackers to create malicious HTTP requests and send them to any App Router or Server Function endpoint. The report further explained that these requests create an endless loop that hangs the server process and prevents future HTTP requests from being served.

According to the Common Vulnerability Scoring System (CVSS), CVE-2025-55184 carries a high severity score of 7.5 out of 10.

CVE-2025-55183, the second source code leakage vulnerability, has a medium severity rating of 5.3 out of 10.

According to Next.js, the exploit chain would be similar. Next.js explained that a susceptible endpoint receives a specially constructed HTTP request from the attacker, which returns the source code of any Server Function. Next. js team cautioned that hardcoded secrets and the company’s logic could be exposed by disclosing generated source code.

Crypto drainers refine evasion tactics for stealthy crypto theft

The rise in drainers, facilitated by the React vulnerability, coincides with the testing of new strategies by crypto-stealing drainer operators and their affiliates to evade detection and exploit crypto wallets. 

According to crypto security specialists from the Security Alliance (SEAL), drainer affiliates are now utilizing high-reputation domains for landing pages and payload hosting, re-registering previously valid domains, and implementing sophisticated fingerprinting techniques. The Security researchers claimed that the goal is to disseminate crypto-drainers, a harmful piece of JavaScript that is injected into phishing websites, and thwart security researchers.

SEAL said that evasion tactics vary among affiliates of a particular drainer family and are not consistently enforced at the drainer service level.

In a different cryptocurrency crime scenario, DeFi protocol Aevo (previously Ribbon Finance) announced on Sunday that $2.3 million had been drained from its vaults. DeFi creator Anton Cheng claimed that an updated Oracle code, which made it possible for anyone to set prices for new assets, was the primary cause of the breach.

Join a premium crypto trading community free for 30 days - normally $100/mo.

Market Opportunity
Wrapped REACT Logo
Wrapped REACT Price(REACT)
$0.02938
$0.02938$0.02938
+0.44%
USD
Wrapped REACT (REACT) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Dramatic Spot Crypto ETF Outflows Rock US Market

Dramatic Spot Crypto ETF Outflows Rock US Market

BitcoinWorld Dramatic Spot Crypto ETF Outflows Rock US Market The cryptocurrency market is always buzzing with activity, and recent developments surrounding US spot Bitcoin and Ethereum ETFs have certainly grabbed attention. After a brief period of inflows, these prominent investment vehicles experienced a significant reversal, recording notable Spot Crypto ETF Outflows on September 22. This shift has sparked discussions among investors and analysts alike, prompting a closer look at what drove these movements and their potential implications for the broader digital asset landscape. What Triggered These Dramatic Spot Crypto ETF Outflows? On September 22, both US spot Bitcoin and Ethereum ETFs collectively observed net outflows, effectively ending a two-day streak of positive inflows. This sudden reversal indicates a potential shift in investor sentiment or market dynamics. Understanding the specifics of these Spot Crypto ETF Outflows is crucial for anyone tracking the pulse of the crypto market. Data from Trader T revealed that spot Bitcoin ETFs alone registered total net outflows amounting to $363.17 million. This substantial figure highlights a notable selling pressure across several key funds. Fidelity’s FBTC led the pack with $276.68 million in outflows. Ark Invest’s ARKB followed, seeing $52.30 million depart. Grayscale’s GBTC, a long-standing player, recorded $24.65 million in outflows. VanEck’s HODL also contributed with $9.54 million. Interestingly, BlackRock’s IBIT and several other funds reported zero flows on this particular day, indicating a concentrated selling activity in specific products rather than a market-wide exodus. How Did Ethereum ETFs Respond to the Spot Crypto ETF Outflows? The trend of net outflows wasn’t limited to Bitcoin. Spot Ethereum ETFs also faced considerable pressure, collectively experiencing $76.06 million in net outflows during the same period. This indicates a broader market sentiment affecting both major cryptocurrencies. Fidelity’s FETH accounted for $33.12 million of the outflows. Bitwise’s ETHW saw $22.30 million withdrawn. BlackRock’s ETHA registered $15.19 million in outflows. Grayscale’s Mini ETH contributed $5.45 million to the total. These figures underscore that while Bitcoin ETFs saw larger absolute outflows, Ethereum ETFs also experienced a significant cooling of investor interest. Such synchronized movements often suggest overarching market factors rather than isolated fund-specific issues. What Are the Broader Implications of These Spot Crypto ETF Outflows? The reversal from inflows to substantial Spot Crypto ETF Outflows could signal a few things. It might reflect profit-taking by investors after recent market rallies, or it could indicate a cautious stance due to macroeconomic uncertainties. Moreover, such movements can influence market sentiment, potentially leading to increased volatility in the short term. For investors, monitoring these ETF flows provides valuable insights into institutional and retail sentiment. Significant outflows can sometimes precede price corrections, offering an opportunity for strategic re-evaluation. Conversely, sustained inflows often suggest growing confidence in digital assets. It is important to remember that ETF flows are just one metric among many. A holistic view, considering on-chain data, macroeconomic indicators, and regulatory news, is essential for making informed decisions in the dynamic crypto space. These Spot Crypto ETF Outflows serve as a reminder of the market’s inherent volatility and the need for continuous vigilance. In summary, the recent dramatic Spot Crypto ETF Outflows from US Bitcoin and Ethereum funds mark a notable shift in the investment landscape. While a two-day inflow streak was broken, these movements are a natural part of a maturing market. They highlight the ebb and flow of investor confidence and the dynamic nature of digital asset investments. As the market continues to evolve, keeping a close eye on these ETF trends will remain crucial for understanding broader sentiment and potential future directions. Frequently Asked Questions (FAQs) Q1: What does “net outflows” mean for crypto ETFs? A1: Net outflows occur when investors redeem more shares from an ETF than they purchase, indicating more money is leaving the fund than entering it. Q2: Which US spot Bitcoin ETFs saw the largest outflows? A2: Fidelity’s FBTC led with $276.68 million in outflows, followed by Ark Invest’s ARKB and Grayscale’s GBTC, contributing significantly to the overall Spot Crypto ETF Outflows. Q3: Were Ethereum ETFs also affected by outflows? A3: Yes, US spot Ethereum ETFs experienced $76.06 million in net outflows, with Fidelity’s FETH and Bitwise’s ETHW being major contributors. Q4: What do these Spot Crypto ETF Outflows suggest about market sentiment? A4: They can suggest a shift towards profit-taking, increased caution due to macroeconomic factors, or a temporary cooling of investor interest in digital assets. Did you find this analysis of Spot Crypto ETF Outflows insightful? Share this article with your network on social media to help others understand the latest trends in the crypto ETF market and contribute to informed discussions! To learn more about the latest crypto market trends, explore our article on key developments shaping Bitcoin and Ethereum institutional adoption. This post Dramatic Spot Crypto ETF Outflows Rock US Market first appeared on BitcoinWorld.
Share
Coinstats2025/09/23 10:55
Remittix Success Leads To Rewarding Presale Investors With 300% Bonus – Here’s How To Get Involved

Remittix Success Leads To Rewarding Presale Investors With 300% Bonus – Here’s How To Get Involved

Besides its enormous presale success, Remittix is also extending a 300% bonus to early purchasers. This temporary bonus can be […] The post Remittix Success Leads
Share
Coindoo2026/02/07 16:39
Korean Crypto Exchange Bithumb Accidentally Gives Away Millions in Bitcoin During Promotion

Korean Crypto Exchange Bithumb Accidentally Gives Away Millions in Bitcoin During Promotion

TLDR Bithumb accidentally sent excess Bitcoin to customers during a promotional “Random Box” event in South Korea Some users reportedly received 2,000 BTC ($139
Share
Coincentral2026/02/07 16:39