CNNVD-202601-1758 Information

CNNVD ID

CNNVD-202601-1758

CVE-2025-68470

  • CNNVD Published: 2026-01-10

Description (Chinese)

react-router是Remix开源的一个 React 的声明式路由。 React Router 6.0.0版本至6.30.1版本和7.0.0版本至7.9.5版本存在输入验证错误漏洞,该漏洞源于特制路径,可能导致重定向攻击。

Description (English)

React-router is a react path for Remix open source. React Router 6.0.0 to 6.30.1 and 7.0.0 to 7.9.5 have input verification error holes, which originate from a special path and may lead to a redirectional attack.

Hazard Level

High

Vulnerability Type

输入验证错误

Affected Vendor

Remix

Published

2026-01-10

Last Modified

2026-02-24

References

https://github.com/remix-run/react-router/security/advisories/GHSA-9jcx-v3wj-wh4m

Patch

https://github.com/remix-run/react-router/releases

Share on: