react

Back Open Paginator
11.12.2025 22:45
hn50 (@hn50@social.lansky.name)

Denial of service and source code exposure in React Server Components

Link: react.dev/blog/2025/12/11/deni
Discussion: news.ycombinator.com/item?id=4

#react




Show Original Post


11.12.2025 22:17
axeleroy (@axeleroy@toot.community)

Following #React2Shell, two new vulnerabilities were found in React Server Components: one enabling Denial of Service, another allowing source code (and hard-coded secrets) to leak!

react.dev/blog/2025/12/11/deni

#React #Security #vulnerability #RSC




Show Original Post


11.12.2025 22:04
sgued (@sgued@pouet.chapril.org)

Wake up honey new React server components CVE just dropped.

#JavaScript #React #CVE




Show Original Post


11.12.2025 22:01
countablenewt (@countablenewt@mastodon.social)

I build websites using Facebook's framework on top of Microsoft's programming language, using Apple's hardware and OS




Show Original Post


11.12.2025 21:57
CuratedHackerNews (@CuratedHackerNews@mastodon.social)

Denial of Service and Source Code Exposure in React Server Components

react.dev/blog/2025/12/11/deni




Show Original Post


11.12.2025 21:05
jobsfordevelopers (@jobsfordevelopers@mastodon.world)

Crypto.com is hiring Senior React Native Developer - Crypto.com App

🔧 #cryptocurrency #react #reactnative #javascript #kotlin #swift #typescript #android #ios #seniorengineer
🌎 Singapore
⏰ Full-time
🏢 Crypto.com

Job details jobsfordevelopers.com/jobs/sen
#jobalert #jobsearch #hiring




Show Original Post


11.12.2025 20:15
devto_vn_bot (@devto_vn_bot@mastodon.maobui.com)

Hoàn thành việc tách một component React khổng lồ thành các component nhỏ, rõ ràng: Navbar (Logo, Search, NumResults), ListBox (MovieList, Movie), WatchedBox (WatchedMoviesSummary, WatchedMovieList, WatchedMovie). Cấu trúc sạch, tái sử dụng, cải thiện tư duy phát triển. #React #Component #Frontend #LậpTrình #ReactJS #phát_triển

dev.to/usama_dev/today-i-split




Show Original Post


11.12.2025 20:13
devto_vn_bot (@devto_vn_bot@mastodon.maobui.com)

ScreenUI ra mắt chính thức! 🚀 Thư viện UI hiện đại với hơn 15 component (Button, Accordion, Card, Toggle, File Upload, Table, Badge…) hỗ trợ TS/JS, giao diện dark/light và CLI tạo component nhanh vào dự án. Tailwind‑first, React/Next.js friendly, mã nguồn mở, không khóa vendor. Hãy thử, star và góp ý! #ScreenUI #UI #React #Nextjs #Tailwind #WebDev #CôngNghệ

dev.to/iamnavneet/screenui-is-




Show Original Post


11.12.2025 17:59
AAKL (@AAKL@infosec.exchange)

Cisco posted this yesterday, if you missed it:

Critical: CVE-2025-55182: Remote Code Execution Vulnerability in React and Next.js Frameworks: December 2025 sec.cloudapps.cisco.com/securi @TalosSecurity #infosec #vulnerability #React




Show Original Post


11.12.2025 09:32
habr (@habr@zhub.link)

OpenIDE Pro: ответ на запросы бизнеса и разработчиков одновременно

Привет! Я Фёдор, CEO OpenIDE. За год с момента анонса OpenIDE выросла в стабильную, привычную и активно используемую IDE, которую всё чаще выбирают разработчики и компании. Мы создали её быстрой, предсказуемой и полностью доступной — и теперь готовы к следующему шагу. В этой статье — что мы сделали, зачем мы это делаем и куда дальше движется OpenIDE.

habr.com/ru/companies/axiomjdk

#openide #openide_pro #java #go #spring #javascript #typescript #react #axiom_jdk #axiomjdk




Show Original Post


11.12.2025 09:19
GripNews (@GripNews@mastodon.social)

🌕 Patterns.dev:打造高效能網路應用程式的設計模式指南
➤ 深入解析 JavaScript、React 與 Vue 的現代設計模式與效能優化策略
patterns.dev/
Patterns.dev 是一個免費線上資源,專注於提供使用原生 JavaScript 或現代框架建構高效能網路應用程式的設計、渲染與效能模式。該網站深入探討了 JavaScript、React 和 Vue 的各種設計模式,涵蓋了從基礎的單例模式到進階的程式碼分割、預載、伺服器端渲染等眾多效能優化技巧。旨在幫助開發者理解並應用這些模式,以提升應用程式的架構、擴充性與使用者體驗。
+ 這個網站的內容太豐富了!從基礎到進階都有涵蓋,而且用詞淺顯易懂,非常適合我們這些正在學習的開發者。
+ 我很欣賞 Patterns.dev 對於效能優化部分的詳盡說明,特別是關於程式碼分割和預載的技巧,這對提升網站載入速度非常有幫助。




Show Original Post


10.12.2025 19:14
sgued (@sgued@pouet.chapril.org)

Hey #Javascript folks, why does no one talking about the recent #React #CVE mentions defensive mechanisms like node's --disallow-code-generation-from-strings which from what I've seen would have prevented the RCE (there may be ways to exploit the prototype pollution but would make the attacker's job much harder).

There is also --disable-proto=delete but I don't know if it's practical.

Using Content Security Policies in the frontend is table stakes, why not also on the server?

#NodeJS #NextJS




Show Original Post


1 ...89 90 91 92 93 94 95 96 97 98 99 ...180
UP