SAP Knowledge Base Article - Preview

3694396 - Is SAP JAM impacted by React Server Components CVE-2025-55182 vulnerability?

Symptom

  • On December 3, 2025, the React Team publicly disclosed a critical security vulnerability affecting React Server Components (RSC) and related packages.
  • The vulnerability allows for unauthenticated remote code execution (RCE) via maliciously crafted HTTP requests.
  • Is SAP JAM is affected by CVE-2025-55182?


Read more...

Environment

SAP Jam Collaboration

Product

SAP Jam Collaboration all versions

Keywords

cve-2025-55182, sap jam, react server components, react client, vulnerability analysis, security risk, third-party software vulnerabilities, react packages, impact assessment, sap cloud identity services, DWS-19955, DWS-19954, DWS-19953 , KBA , LOD-SF-JAM-ADM , Administrator Access Request , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.