Skip to content

Conversation

@sfewer-r7
Copy link
Contributor

There is a typo in several places for the CVE ID used in the recent react2shell exploit module from pull request #20747. The string cve_2025_55102 should be cve_2025_55182 (Note the 8 in the second last character).

This commit renames the affected files and content in several places (Including db/modules_metadata_base.json, which is ok to modify directly I assume?)

@jheysel-r7 jheysel-r7 self-assigned this Dec 9, 2025
Copy link
Contributor

@jheysel-r7 jheysel-r7 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM 👍

Testing

➜  metasploit-framework git:(1a8e88c054) rg "55102"
➜  metasploit-framework git:(1a8e88c054) find . -name "*55102*"
➜  metasploit-framework git:(1a8e88c054)

@jheysel-r7 jheysel-r7 merged commit 47771a6 into rapid7:master Dec 9, 2025
14 of 19 checks passed
@jheysel-r7 jheysel-r7 added the rn-no-release-notes no release notes label Dec 9, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants