PeopleSync Knowledge Base

Is PeopleSync affected by React2Shell?

🤔 Problem

An exploit has been found in React Server Components (RSC). The exploit can be found in components like Next.js, React Router, Expo, Redwood SDK, Vite, Parcel and Waku. Due to its connections to numerous frameworks, this phenomenon is also referred to as
React2Shell, in analogy to Log4Shell. For details see e.g. the security warning of German BSI agency.

Is PeopleSync affected?

🌱 Solution

No, PeopleSync is not affected.

Product

Vulnerable

Reason

PeopleSync Backend

No

We are not using React.

PeopleSync Frontend

No

We are not using React.

PeopleSync Android App

No

We are not using React.

info Other components

If you run any 3rd-party-components on your server, please check them for the vulnerability and contact the manufacturer of the software or author of the component.