React2Shell (CVE-2025-55182) enabled unauthenticated RCE in React Server Components; SAP NetWeaver (CVE-2025-31324) allowed JSP web shells. Rapid scanning and exploitation followed across 2025. #React2Shell #SAPNetWeaver #CVE2025 https://bit.ly/3KZYA9a