Loading video...

Video Failed to Load

Go Home

A POC for CVE-2025-55182

552,596 views • 9 months ago •via X (Twitter)

31 Comments

maple3142's profile picture
maple31429 months ago

It is like a fun node.js (or whatever server JS runtime) jail challenge that you would see in a CTF.

Peter Girnus 🦅's profile picture
Peter Girnus 🦅9 months ago

CTF in prod. The best kind. The worst kind.

Tears's profile picture
Tears9 months ago

The original poc by Lachlan Davidson is available btw

thomas🌦's profile picture
thomas🌦9 months ago

write-up someday of your technique?

maple3142's profile picture
maple31429 months ago

Just added a short writeup for the trick to the gist

thomas🌦's profile picture
thomas🌦9 months ago

thank you!

Sylvie's profile picture
Sylvie9 months ago

ayyyyyyyy nice job <3

Basix's profile picture
Basix9 months ago

clean and easy to understand, amazing!

MartinZugec's profile picture
MartinZugec9 months ago

Heya, I see you're passing the child_process exploit string inside the _prefix property. How is this string being passed as an argument to the function? My understanding of the Flight protocol is that the parser doesn't automatically eval() strings in JSON values 🤔

Lexter's profile picture
Lexter9 months ago

good work I am working on that since the last night and I don't have found a good way to pollute to bypass proxy bundlerConfig. So big gg

Lucien's profile picture
Lucien9 months ago

Insane poc ! gg

Ivan Garcia's profile picture
Ivan Garcia9 months ago

This is insane.

Jimmy's profile picture
Jimmy9 months ago

what a gadget :O congrats! seems like first poc

IRIS C2's profile picture
IRIS C29 months ago

Good work

Chia's profile picture
Chia9 months ago

It appears to work on a fresh created next project, but fails when a middleware (proxy.ts/middleware.ts) redirects unauthenticated users.

Y4GUAR3TE's profile picture
Y4GUAR3TE9 months ago

@sushicomabacate

Turing@penligent.ai's profile picture
[email protected]9 months ago

hi why not trying Penligent's one-click PoC? @penligent

ponti's profile picture
ponti9 months ago

Incredible work on the gadget chain, thanks for sharing

BENRICH's profile picture
BENRICH9 months ago

Good stuff 👏

D.'s profile picture
D.9 months ago

😅

Alex's profile picture
Alex9 months ago

Can you share the payload? Also a simple explanation of the _prefix thing 😀

Just_Clive's profile picture
Just_Clive9 months ago

PoC is live. If you haven't patched yet, stop scrolling and run this: npx @neurolint/cli security:cve-2025-55182 . --fix Free. Open source. Takes 30 seconds.

Cyberexploit💀🧘's profile picture
Cyberexploit💀🧘9 months ago

Noted

Night_Dive_C's profile picture
Night_Dive_C9 months ago

做得好👍

Gabriel Bigardi's profile picture
Gabriel Bigardi9 months ago

Thanks, i tried it today on my website, to my surprise it worked out, when i checked the /tmp/ it was full o xmrigs already... they are scanning the whole ip range

🧊's profile picture
🧊9 months ago

@h4x0r_dz How much vulnerable servers with this exploit out there?

CallMeWhy's profile picture
CallMeWhy9 months ago

优雅

MissionPossible's profile picture
MissionPossible9 months ago

@grok о чем видео?

Hackers4Right- let us all weep's profile picture
Hackers4Right- let us all weep9 months ago

any1 using this for sans?

ElleuchX1's profile picture
ElleuchX19 months ago

🐐

l2 p0ir3's profile picture
l2 p0ir39 months ago

To Explain & PoC

Related Videos