🤔 Problem
An exploit has been found in React Server Components (RSC). The exploit can be found in components like Next.js, React Router, Expo, Redwood SDK, Vite, Parcel and Waku. Due to its connections to numerous frameworks, this phenomenon is also referred to as
React2Shell, in analogy to Log4Shell. For details see e.g. the security warning of German BSI agency.
Is PeopleSync affected?
🌱 Solution
No, PeopleSync is not affected.
|
Product |
Vulnerable |
Reason |
|---|---|---|
|
PeopleSync Backend |
No |
We are not using React. |
|
PeopleSync Frontend |
No |
We are not using React. |
|
PeopleSync Android App |
No |
We are not using React. |
Other components
If you run any 3rd-party-components on your server, please check them for the vulnerability and contact the manufacturer of the software or author of the component.