# Denial of Service and Source Code Exposure in React Server Components

DevFeed: [Denial of Service and Source Code Exposure in React Server Components](<https://devfeed.tech/articles/denial-of-service-and-source-code-exposure-in-react-server-components-2995.md>)

Original publisher: [Read original article](<https://react.dev/blog/2025/12/11/denial-of-service-and-source-code-exposure-in-react-server-components>)

Author: The React Team

Published: 2025-12-11T00:00:00Z

Content type: release

Language: en

Sources: [React Blog](<https://devfeed.tech/sources/react-blog.md>)

Topics: [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>)

Tags: [react](<https://devfeed.tech/tags/react.md>), [security](<https://devfeed.tech/tags/security.md>), [server](<https://devfeed.tech/tags/server.md>), [update](<https://devfeed.tech/tags/update.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

## AI overview

React disclosed high-severity denial-of-service and medium-severity source-code-exposure vulnerabilities in React Server Components. Affected users should upgrade to fixed releases immediately.

## Source excerpt

Security researchers have found and disclosed two additional vulnerabilities in React Server Components while attempting to exploit the patches in last week's critical vulnerability. High vulnerability Denial of Service (CVE-2025-55184), and medium vulnerability Source Code Exposure (CVE-2025-55183)