{"id":31981,"date":"2025-12-13T09:44:00","date_gmt":"2025-12-13T00:44:00","guid":{"rendered":"https:\/\/workwonders.jp\/media\/archives\/31981\/"},"modified":"2025-12-13T09:44:00","modified_gmt":"2025-12-13T00:44:00","slug":"react2shell%ef%bc%88cve-2025-55182%ef%bc%89%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%81%a8%e3%81%af%ef%bc%9f%e7%94%9f%e6%88%90ai%e6%99%82%e4%bb%a3%e3%81%ae%e6%94%bb%e6%92%83%e3%81%a8%e5%af%be%e7%ad%96","status":"publish","type":"post","link":"https:\/\/workwonders.jp\/media\/archives\/31981\/","title":{"rendered":"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/thumbnail-cmj3j2zbq0002a1982f96xqpu-2025-12-13-09-43-24.jpg\" alt=\"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56\" width=\"1376\" height=\"768\" class=\"alignnone size-full wp-image-31975\" srcset=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/thumbnail-cmj3j2zbq0002a1982f96xqpu-2025-12-13-09-43-24.jpg 1376w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/thumbnail-cmj3j2zbq0002a1982f96xqpu-2025-12-13-09-43-24-300x167.jpg 300w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/thumbnail-cmj3j2zbq0002a1982f96xqpu-2025-12-13-09-43-24-1024x572.jpg 1024w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/thumbnail-cmj3j2zbq0002a1982f96xqpu-2025-12-13-09-43-24-768x429.jpg 768w\" sizes=\"auto, (max-width: 1376px) 100vw, 1376px\" \/><\/p>\n<h2>\u306f\u3058\u3081\u306b\uff1aReact2Shell\uff08CVE-2025-55182\uff09\u304cDX\u3068\u751f\u6210AI\u306b\u3082\u305f\u3089\u3059\u30a4\u30f3\u30d1\u30af\u30c8<\/h2>\n<p>React2Shell\u3068\u3057\u3066\u77e5\u3089\u308c\u308bCVE-2025-55182\u306f\u3001React Server Components\u306b\u6f5c\u3080\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\uff08RCE\uff09\u306e\u8106\u5f31\u6027\u3092\u6307\u3057\u307e\u3059\u3002\u751f\u6210AI\u3092\u6d3b\u7528\u3059\u308b\u4f01\u696d\u304c\u5897\u3048\u308b\u4e2d\u3001\u3053\u306e\u554f\u984c\u306fDX\u63a8\u9032\u306b\u5e45\u5e83\u3044\u5f71\u97ff\u3092\u53ca\u307c\u3057\u307e\u3059\u3002\u7279\u306b\u81ea\u52d5\u5316\u3084\u30af\u30e9\u30a6\u30c9\u6d3b\u7528\u304c\u9032\u3080\u73fe\u5834\u3067\u306f\u3001\u308f\u305a\u304b\u306a\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u6b20\u9665\u304c\u696d\u52d9\u3084\u4fe1\u983c\u6027\u306b\u91cd\u5927\u306a\u640d\u5931\u3092\u3082\u305f\u3089\u3059\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>\u672c\u8a18\u4e8b\u3067\u306f\u3001React2Shell\uff08CVE-2025-55182\uff09\u306e\u6280\u8853\u7684\u80cc\u666f\u3084\u653b\u6483\u30b7\u30ca\u30ea\u30aa\u3001\u30d1\u30c3\u30c1\u9069\u7528\u3084\u904b\u7528\u4e0a\u306e\u30dd\u30a4\u30f3\u30c8\u3092\u4f53\u7cfb\u7684\u306b\u89e3\u8aac\u3057\u307e\u3059\u3002\u751f\u6210AI\u6642\u4ee3\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u3068\u3057\u3066\u3001\u3069\u306e\u3088\u3046\u306b\u8106\u5f31\u6027\u3092\u7ba1\u7406\u3057\u3001DX\u6226\u7565\u3092\u5b89\u5168\u304b\u3064\u52b9\u7387\u7684\u306b\u5c55\u958b\u3067\u304d\u308b\u304b\u3092\u8003\u3048\u308b\u53c2\u8003\u306b\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<h2>React2Shell\uff08CVE-2025-55182\uff09\u306e\u6280\u8853\u7684\u6982\u8981\u3068\u5f71\u97ff\u7bc4\u56f2<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-2-2025-12-13-09-43-25.jpg\" alt=\"React2Shell\uff08CVE-2025-55182\uff09\u306e\u6280\u8853\u7684\u6982\u8981\u3068\u5f71\u97ff\u7bc4\u56f2\" width=\"1376\" height=\"768\" class=\"alignnone size-full wp-image-31976\" srcset=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-2-2025-12-13-09-43-25.jpg 1376w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-2-2025-12-13-09-43-25-300x167.jpg 300w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-2-2025-12-13-09-43-25-1024x572.jpg 1024w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-2-2025-12-13-09-43-25-768x429.jpg 768w\" sizes=\"auto, (max-width: 1376px) 100vw, 1376px\" \/><\/p>\n<h3>\u8106\u5f31\u6027\u306e\u672c\u8cea\u3068React Server Components\u30fbFlight\u30d7\u30ed\u30c8\u30b3\u30eb<\/h3>\n<p>React2Shell\uff08CVE-2025-55182\uff09\u306e\u6839\u672c\u539f\u56e0\u306f\u3001React Server Components\uff08RSC\uff09\u3067\u4fe1\u983c\u3067\u304d\u306a\u3044\u30c7\u30fc\u30bf\u3092\u4e0d\u9069\u5207\u306b\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u3057\u3066\u3044\u308b\u70b9\u306b\u3042\u308a\u307e\u3059\u3002RSC\u306f\u30b5\u30fc\u30d0\u30fc\u5074\u3067UI\u90e8\u54c1\u3092\u52d5\u304b\u3057\u3001\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u306b\u306f\u8efd\u91cf\u5316\u3055\u308c\u305f\u51fa\u529b\u3092\u8fd4\u3059\u8a2d\u8a08\u3067\u3059\u3002\u305d\u306e\u30c8\u30e9\u30f3\u30b9\u30dd\u30fc\u30c8\u5c64\u3068\u3057\u3066\u7528\u3044\u3089\u308c\u308b\u306e\u304cFlight\u30d7\u30ed\u30c8\u30b3\u30eb\u3067\u3001\u8907\u96d1\u306a\u30c7\u30fc\u30bf\u3092\u30b9\u30c8\u30ea\u30fc\u30df\u30f3\u30b0\u5f62\u5f0f\u3067\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u30fb\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u3059\u308b\u4ed5\u7d44\u307f\u3092\u5099\u3048\u3066\u3044\u307e\u3059\u3002\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u6642\u306e\u691c\u8a3c\u304c\u4e0d\u5341\u5206\u306a\u5834\u5408\u3001\u653b\u6483\u8005\u304c\u7d30\u5de5\u3057\u305fHTTP\u30da\u30a4\u30ed\u30fc\u30c9\u3092\u9001\u308a\u8fbc\u307f\u3001RSC\u306e\u5185\u90e8\u51e6\u7406\u3092\u4e57\u3063\u53d6\u3063\u3066\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u3092\u679c\u305f\u305b\u308b\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\uff08<a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-55182\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*1<\/a>\uff09\u3002RSC\u30b5\u30fc\u30d0\u30fc\u306f\u81ea\u52d5\u7684\u306b\u6e21\u3055\u308c\u305f\u30c7\u30fc\u30bf\u3092\u8907\u6570\u306e\u30aa\u30d6\u30b8\u30a7\u30af\u30c8\u3078\u9023\u7d50\u3059\u308b\u305f\u3081\u3001\u30d7\u30ed\u30c8\u30bf\u30a4\u30d7\u30c1\u30a7\u30fc\u30f3\u306e\u4ed5\u7d44\u307f\u3092\u60aa\u7528\u3055\u308c\u308b\u3068\u4efb\u610f\u306e\u30b3\u30fc\u30c9\u3092\u547c\u3073\u51fa\u305b\u308b\u8106\u5f31\u6027\u306b\u3064\u306a\u304c\u308a\u307e\u3059\u3002\u5b9f\u969b\u3001React\u30c1\u30fc\u30e0\u306b\u3088\u308c\u3070\u3001Flight\u30d7\u30ed\u30c8\u30b3\u30eb\u306e\u30c7\u30b3\u30fc\u30c9\u30ed\u30b8\u30c3\u30af\u306f2025\u5e7411\u6708\u672b\u306b\u6307\u6458\u3055\u308c\u3066\u304a\u308a\u3001\u30b5\u30fc\u30d0\u30fc\u6a5f\u80fd\u3092\u5229\u7528\u3057\u3066\u3044\u306a\u3044\u5834\u5408\u3067\u3082\u5f71\u97ff\u3092\u53d7\u3051\u308b\u30b1\u30fc\u30b9\u304c\u3042\u308b\u3068\u3055\u308c\u3066\u3044\u307e\u3059\uff08<a href=\"https:\/\/www.tenable.com\/blog\/react2shell-cve-2025-55182-react-server-components-rce\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*2<\/a>\uff09\u3002<\/p>\n<h3>\u5f71\u97ff\u3092\u53d7\u3051\u308b\u30d0\u30fc\u30b8\u30e7\u30f3\u3068\u30b3\u30f3\u30dd\u30fc\u30cd\u30f3\u30c8\u69cb\u6210<\/h3>\n<p>CVE-2025-55182\u306e\u5f71\u97ff\u5bfe\u8c61\u306f\u3001React\u306e19.0\u7cfb\u300119.1\u7cfb\u300119.2\u7cfb\u306e\u307b\u304b\u3001\u201creact-server-dom-webpack\u201d\u3084\u201creact-server-dom-parcel\u201d\u3001\u201creact-server-dom-turbopack\u201d\u306a\u3069RSC\u3092\u6271\u3046\u30d1\u30c3\u30b1\u30fc\u30b8\u304c\u542b\u307e\u308c\u307e\u3059\uff08<a href=\"https:\/\/www.ipa.go.jp\/security\/security-alert\/2025\/alert20251209.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*3<\/a>\uff09\u3002\u3053\u308c\u3089\u306e\u30d1\u30c3\u30b1\u30fc\u30b8\u306fJavaScript\u30d0\u30f3\u30c9\u30e9\u30fc\u3067\u3042\u308bWebpack\u3084Parcel\u3001Turbopack\u3068\u9023\u643a\u3057\u3001\u30d5\u30ec\u30fc\u30e0\u30ef\u30fc\u30af\u5168\u4f53\u306e\u30b5\u30fc\u30d0\u30fc\u5074\u51e6\u7406\u306b\u6df1\u304f\u7d44\u307f\u8fbc\u307e\u308c\u307e\u3059\u3002\u305d\u306e\u305f\u3081\u3001React Server Components\u3092\u76f4\u63a5\u547c\u3073\u51fa\u3057\u3066\u3044\u306a\u304f\u3066\u3082\u3001\u4f9d\u5b58\u95a2\u4fc2\u306b\u3088\u3063\u3066\u8106\u5f31\u90e8\u5206\u304c\u30ed\u30fc\u30c9\u3055\u308c\u308b\u5834\u5408\u304c\u3042\u308a\u307e\u3059\uff08<a href=\"https:\/\/www.jpcert.or.jp\/newsflash\/2025120501.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*4<\/a>\uff09\u3002Next.js\u306e15\u301c16\u7cfb\u3084\u4e00\u90e819\u7cfb\u306eReact Router\u3001Waku\u306a\u3069\u3082\u4f8b\u5916\u3067\u306f\u3042\u308a\u307e\u305b\u3093\u3002\u5b9f\u969b\u306e\u30b3\u30fc\u30c9\u304cServer Function\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u3092\u4f7f\u308f\u306a\u3044\u3088\u3046\u306b\u898b\u3048\u3066\u3082\u3001\u30d5\u30ec\u30fc\u30e0\u30ef\u30fc\u30af\u5074\u306e\u30e2\u30b8\u30e5\u30fc\u30eb\u4f9d\u5b58\u306b\u3088\u3063\u3066\u8106\u5f31\u90e8\u5206\u304c\u30ed\u30fc\u30c9\u3055\u308c\u308b\u53ef\u80fd\u6027\u304c\u6307\u6458\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u3053\u3046\u3057\u305f\u5e83\u7bc4\u56f2\u306a\u5f71\u97ff\u304b\u3089\u3001\u8907\u6570\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u6a5f\u95a2\u304c\u7dca\u6025\u5bfe\u7b56\u3092\u4fc3\u3057\u3066\u304a\u308a\u3001\u653b\u6483\u8005\u306b\u3088\u308b\u81ea\u52d5\u30b9\u30ad\u30e3\u30f3\u3082\u591a\u6570\u78ba\u8a8d\u3055\u308c\u3066\u3044\u307e\u3059\uff08<a href=\"https:\/\/aws.amazon.com\/blogs\/security\/china-nexus-cyber-threat-groups-rapidly-exploit-react2shell-vulnerability-cve-2025-55182\/\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*5<\/a>\uff09\u3002<\/p>\n<h3>CVSS\u30b9\u30b3\u30a2\u3068\u516c\u8868\u30fb\u5bfe\u5fdc\u306e\u30bf\u30a4\u30e0\u30e9\u30a4\u30f3<\/h3>\n<p>\u672c\u8106\u5f31\u6027\u306eCVSS\u30b9\u30b3\u30a2\u306f10.0\u3068\u3055\u308c\u3001\u5371\u967a\u5ea6\u306f\u6700\u5927\u7d1a\u3067\u3059\u30022025\u5e7412\u67083\u65e5\u306bCVE-2025-55182\u3068\u3057\u3066\u516c\u8868\u3055\u308c\u308b\u3068\u540c\u6642\u306b\u3001\u4e3b\u8981\u306a\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30d9\u30f3\u30c0\u30fc\u3084OSS\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u304c\u6ce8\u610f\u559a\u8d77\u3092\u767a\u4fe1\u3057\u30015\u65e5\u306b\u306fPoC\uff08\u6982\u5ff5\u5b9f\u8a3c\u30b3\u30fc\u30c9\uff09\u304c\u4e00\u822c\u516c\u958b\u3055\u308c\u307e\u3057\u305f\uff08<a href=\"https:\/\/react.dev\/blog\/2025\/12\/03\/critical-security-vulnerability-in-react-server-components\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*6<\/a>\uff09\u300212\u670810\u65e5\u306b\u306f\u56fd\u5185\u3067\u3082\u5b9f\u969b\u306e\u653b\u6483\u304c\u5831\u3058\u3089\u308c\u300112\u670812\u65e5\u307e\u3067\u306b\u56fd\u5bb6\u652f\u63f4\u578b\u30b0\u30eb\u30fc\u30d7\u306e\u60aa\u7528\u304c\u660e\u308b\u307f\u306b\u51fa\u3066\u3001\u8ffd\u52a0\u306e\u8106\u5f31\u6027\uff08CVE-2025-55184\u3001CVE-2025-67779\u306a\u3069\uff09\u3084\u30bd\u30fc\u30b9\u30b3\u30fc\u30c9\u6f0f\u6d29\u30ea\u30b9\u30af\uff08CVE-2025-55183\uff09\u3078\u306e\u8b66\u6212\u3082\u9ad8\u307e\u308a\u307e\u3057\u305f\uff08<a href=\"https:\/\/www.ipa.go.jp\/security\/security-alert\/2025\/alert20251209.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*3<\/a>\uff09\u3002\u591a\u304f\u306e\u56fd\u5185\u5916\u6a5f\u95a2\u306f\u3053\u308c\u3089\u3092\u6700\u512a\u5148\u3067\u5bfe\u51e6\u3059\u3079\u304d\u3068\u3057\u3001\u30d5\u30a1\u30fc\u30b9\u30c8\u30d1\u30fc\u30c6\u30a3\u3060\u3051\u3067\u306a\u304f\u4f9d\u5b58\u95a2\u4fc2\u307e\u3067\u542b\u3081\u305f\u30a2\u30c3\u30d7\u30b0\u30ec\u30fc\u30c9\u3092\u63a8\u5968\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<h2>React2Shell\u3092\u60aa\u7528\u3057\u305f\u653b\u6483\u30b7\u30ca\u30ea\u30aa\u3068\u751f\u6210AI\u6642\u4ee3\u306e\u30ea\u30b9\u30af<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-3-2025-12-13-09-43-25.jpg\" alt=\"React2Shell\u3092\u60aa\u7528\u3057\u305f\u653b\u6483\u30b7\u30ca\u30ea\u30aa\u3068\u751f\u6210AI\u6642\u4ee3\u306e\u30ea\u30b9\u30af\" width=\"1376\" height=\"768\" class=\"alignnone size-full wp-image-31980\" srcset=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-3-2025-12-13-09-43-25.jpg 1376w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-3-2025-12-13-09-43-25-300x167.jpg 300w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-3-2025-12-13-09-43-25-1024x572.jpg 1024w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-3-2025-12-13-09-43-25-768x429.jpg 768w\" sizes=\"auto, (max-width: 1376px) 100vw, 1376px\" \/><\/p>\n<h3>\u672a\u8a8d\u8a3c\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u3068\u30af\u30e9\u30a6\u30c9\u74b0\u5883\u306e\u653b\u6483\u30b7\u30ca\u30ea\u30aa<\/h3>\n<p>React2Shell\u8106\u5f31\u6027\u3092\u60aa\u7528\u3059\u308b\u653b\u6483\u8005\u306f\u3001\u5358\u7d14\u306aHTTP\u30ea\u30af\u30a8\u30b9\u30c8\u3092\u7528\u3044\u3066\u8a8d\u8a3c\u306a\u3057\u306b\u30b5\u30fc\u30d0\u30fc\u4e0a\u3067\u30b3\u30fc\u30c9\u5b9f\u884c\u3092\u8a66\u307f\u307e\u3059\u3002\u653b\u6483\u304c\u6210\u529f\u3057\u305f\u5834\u5408\u3001\u30b5\u30fc\u30d0\u30fc\u74b0\u5883\u5909\u6570\u3084\u6a5f\u5bc6\u60c5\u5831\u306e\u53d6\u5f97\u3001\u3055\u3089\u306b\u306f\u30af\u30e9\u30a6\u30c9\u30ea\u30bd\u30fc\u30b9\u3078\u306e\u6c34\u5e73\u5c55\u958b\u3082\u53ef\u80fd\u3067\u3059\u3002\u8abf\u67fb\u6a5f\u95a2\u306b\u3088\u308c\u3070\u3001\u8106\u5f31\u306aRSC\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u306e\u591a\u304f\u304c\u30b3\u30f3\u30c6\u30ca\u3084\u30af\u30e9\u30a6\u30c9\u4e0a\u306b\u5c55\u958b\u3055\u308c\u3066\u304a\u308a\u3001\u8cc7\u683c\u60c5\u5831\u306e\u7a83\u53d6\u3084\u4eee\u60f3\u901a\u8ca8\u30de\u30a4\u30cb\u30f3\u30b0\u30c4\u30fc\u30eb\uff08XMRig\u306a\u3069\uff09\u306e\u8a2d\u7f6e\u304c\u78ba\u8a8d\u3055\u308c\u3066\u3044\u307e\u3059\uff08<a href=\"https:\/\/www.wiz.io\/blog\/critical-vulnerability-in-react-cve-2025-55182\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*7<\/a>\uff09\u3002AWS\u306b\u3088\u308b\u30cf\u30cb\u30fc\u30dd\u30c3\u30c8\u89b3\u6e2c\u3067\u3082\u653b\u6483\u304c\u6d3b\u767a\u5316\u3057\u3066\u304a\u308a\u3001\u4fb5\u5165\u306e\u96e3\u6613\u5ea6\u304c\u6975\u3081\u3066\u4f4e\u3044\u3053\u3068\u304c\u793a\u5506\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u307e\u305f\u3001\u30d1\u30d6\u30ea\u30c3\u30af\u30af\u30e9\u30a6\u30c9\u3067\u30ea\u30b9\u30ad\u30fc\u306a\u6a29\u9650\u8a2d\u5b9a\u304c\u6b8b\u3055\u308c\u3066\u3044\u308b\u5834\u5408\u3001\u30ef\u30fc\u30af\u30ed\u30fc\u30c9\u3092\u4e57\u3063\u53d6\u3089\u308c\u308b\u30ea\u30b9\u30af\u304c\u4e00\u6bb5\u3068\u9ad8\u307e\u308a\u307e\u3059\u3002<\/p>\n<h3>\u751f\u6210AI\u30fb\u696d\u52d9\u81ea\u52d5\u5316\u30ef\u30fc\u30af\u30d5\u30ed\u30fc\u3078\u306e\u653b\u6483\u30c1\u30a7\u30fc\u30f3<\/h3>\n<p>DX\u63a8\u9032\u306e\u4e00\u7aef\u3068\u3057\u3066\u3001\u81ea\u7136\u8a00\u8a9e\u51e6\u7406\u30e2\u30c7\u30eb\uff08LLM\uff09\u306a\u3069\u306e\u751f\u6210AI\u3092\u6d3b\u7528\u3057\u305f\u696d\u52d9\u81ea\u52d5\u5316\u304c\u5897\u3048\u3066\u3044\u307e\u3059\u3002React2Shell\u3092\u60aa\u7528\u3057\u3066\u30b5\u30fc\u30d0\u30fc\u5185\u90e8\u306b\u4fb5\u5165\u3055\u308c\u308b\u3068\u3001AI\u30e2\u30c7\u30eb\u306e\u5b66\u7fd2\u30c7\u30fc\u30bf\u3084\u63a8\u8ad6\u30a8\u30f3\u30b8\u30f3\u305d\u306e\u3082\u306e\u304c\u5916\u90e8\u304b\u3089\u6539\u3056\u3093\u3055\u308c\u308b\u30ea\u30b9\u30af\u304c\u9ad8\u307e\u308a\u307e\u3059\u3002\u30e6\u30fc\u30b6\u30fc\u304cAI\u5c0e\u5165\u306e\u307f\u306b\u7740\u76ee\u3057\u3066\u3044\u3066\u3082\u3001\u88cf\u5074\u3067RSC\u6a5f\u80fd\u3092\u7d44\u307f\u5408\u308f\u305b\u3066\u3044\u308b\u5834\u5408\u3001\u653b\u6483\u30c1\u30a7\u30fc\u30f3\u306e\u4e00\u90e8\u3068\u3057\u3066\u72d9\u308f\u308c\u308b\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\uff08<a href=\"https:\/\/www.trendmicro.com\/en_us\/research\/25\/l\/CVE-2025-55182-analysis-poc-itw.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*8<\/a>\uff09\u3002\u7279\u306b\u696d\u52d9\u30d7\u30ed\u30bb\u30b9\u3092\u81ea\u52d5\u5316\u3059\u308b\u969b\u306b\u5916\u90e8\u3068\u306eAPI\u9023\u643a\u3084\u30af\u30e9\u30a6\u30c9\u30ea\u30bd\u30fc\u30b9\u7ba1\u7406\u3092\u884c\u3046\u3068\u3001\u30b3\u30fc\u30c9\u304c\u6f0f\u3048\u3044\u307e\u305f\u306f\u6539\u3056\u3093\u3055\u308c\u305f\u6642\u70b9\u3067\u5927\u898f\u6a21\u306a\u696d\u52d9\u505c\u6b62\u3084\u30c7\u30fc\u30bf\u6539\u3056\u3093\u304c\u767a\u751f\u3059\u308b\u304a\u305d\u308c\u304c\u3042\u308a\u307e\u3059\u3002\u751f\u6210AI\u306e\u30af\u30e9\u30a6\u30c9\u30b5\u30fc\u30d3\u30b9\u306f\u91cd\u8981\u30c7\u30fc\u30bf\u306e\u3084\u308a\u53d6\u308a\u304c\u983b\u767a\u3059\u308b\u305f\u3081\u3001\u8106\u5f31\u6027\u60aa\u7528\u3092\u304d\u3063\u304b\u3051\u3068\u3057\u305f\u60c5\u5831\u6f0f\u6d29\u30ea\u30b9\u30af\u306b\u5341\u5206\u306a\u5bfe\u7b56\u304c\u5fc5\u8981\u3067\u3059\u3002<\/p>\n<h3>\u56fd\u5bb6\u652f\u63f4\u578b\u30b0\u30eb\u30fc\u30d7\u3092\u542b\u3080\u653b\u6483\u4e8b\u4f8b\u3068\u88ab\u5bb3\u52d5\u5411<\/h3>\n<p>\u6700\u65b0\u306e\u5831\u9053\u3067\u306f\u3001\u4e2d\u56fd\u7cfb\u3068\u3055\u308c\u308b\u300cEarth Lamina\u300d\u3084\u300cJackpot Panda\u300d\u306a\u3069\u304cReact2Shell\u3092\u5229\u7528\u3057\u3001\u4e16\u754c\u7684\u306a\u7121\u5dee\u5225\u653b\u6483\u3092\u9032\u3081\u3066\u3044\u308b\u3068\u767a\u8868\u3055\u308c\u3066\u3044\u307e\u3059\u3002Palo Alto Networks\u306e\u89b3\u6e2c\u30c7\u30fc\u30bf\u306b\u3088\u308b\u3068\u300130\u4ee5\u4e0a\u306e\u7d44\u7e54\u304c\u653b\u6483\u3092\u53d7\u3051\u3001AWS\u69cb\u6210\u60c5\u5831\u306e\u7a83\u53d6\u3084\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u304c\u78ba\u8a8d\u3055\u308c\u307e\u3057\u305f\uff08<a href=\"https:\/\/news.yahoo.co.jp\/articles\/b4a2d642b7813fcee36e92a29b9e747ee0244716\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*9<\/a>\uff09\uff08<a href=\"https:\/\/unit42.paloaltonetworks.com\/cve-2025-55182-react-and-cve-2025-66478-next\/\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*10<\/a>\uff09\u3002\u307e\u305f\u3001FBI\u306f\u3053\u306e\u8106\u5f31\u6027\u3092\u6025\u304e\u4fee\u6b63\u3059\u308b\u3088\u3046\u547c\u3073\u304b\u3051\u3066\u304a\u308a\u3001\u6025\u901f\u306a\u60aa\u7528\u304c\u898b\u3089\u308c\u308b\u72b6\u614b\u3068\u5831\u3058\u3066\u3044\u307e\u3059\u3002Wiz\u306e\u8abf\u67fb\u306b\u3088\u308c\u3070\u3001\u30af\u30e9\u30a6\u30c9\u74b0\u5883\u5168\u4f53\u306e\u7d044\u5272\u304c\u8106\u5f31\u306a\u30a4\u30f3\u30b9\u30bf\u30f3\u30b9\u3092\u5185\u5305\u3057\u3066\u3044\u308b\u53ef\u80fd\u6027\u304c\u3042\u308b\u3068\u306e\u3053\u3068\u3067\u30012021\u5e74\u306eLog4j\u554f\u984c\u306b\u5339\u6575\u3059\u308b\u6df1\u523b\u5ea6\u3060\u3068\u6307\u6458\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u97d3\u56fd\u306eTiori\u304c\u300cReactGuard\u300d\u306a\u308b\u691c\u77e5\u30c4\u30fc\u30eb\u3092\u7121\u511f\u63d0\u4f9b\u3057\u3001\u30d1\u30a4\u30aa\u30ea\u30f3\u30af\u793e\u304c\u81ea\u793eWAF\u5411\u3051\u306e\u9632\u5fa1\u30e2\u30b8\u30e5\u30fc\u30eb\u3092\u914d\u5e03\u3059\u308b\u306a\u3069\u3001\u6025\u30d4\u30c3\u30c1\u3067\u306e\u5bfe\u7b56\u63d0\u4f9b\u304c\u9032\u3093\u3067\u3044\u307e\u3059\u3002<\/p>\n<h2>React2Shell\u306b\u5bfe\u3059\u308b\u57fa\u672c\u5bfe\u7b56\uff1a\u30d1\u30c3\u30c1\u9069\u7528\u3068\u69cb\u6210\u7ba1\u7406<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-4-2025-12-13-09-43-25.jpg\" alt=\"React2Shell\u306b\u5bfe\u3059\u308b\u57fa\u672c\u5bfe\u7b56\uff1a\u30d1\u30c3\u30c1\u9069\u7528\u3068\u69cb\u6210\u7ba1\u7406\" width=\"1376\" height=\"768\" class=\"alignnone size-full wp-image-31977\" srcset=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-4-2025-12-13-09-43-25.jpg 1376w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-4-2025-12-13-09-43-25-300x167.jpg 300w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-4-2025-12-13-09-43-25-1024x572.jpg 1024w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-4-2025-12-13-09-43-25-768x429.jpg 768w\" sizes=\"auto, (max-width: 1376px) 100vw, 1376px\" \/><\/p>\n<h3>React\u304a\u3088\u3073Next.js\u306e\u4fee\u6b63\u7248\u30d0\u30fc\u30b8\u30e7\u30f3\u3068\u9069\u7528\u512a\u5148\u5ea6<\/h3>\n<p>\u672c\u8106\u5f31\u6027\u306b\u5bfe\u51e6\u3059\u308b\u6700\u3082\u91cd\u8981\u306a\u30b9\u30c6\u30c3\u30d7\u306f\u3001\u65e9\u6025\u306a\u30d1\u30c3\u30c1\u9069\u7528\u3067\u3059\u3002React\u3067\u306f19.0.1\u300119.1.2\u300119.2.1\u304c\u4fee\u6b63\u7248\u3068\u3057\u3066\u516c\u958b\u3055\u308c\u3066\u304a\u308a\u3001Next.js\u3067\u306f15.0.5\u300115.1.9\u300115.2.6\u300115.3.6\u300115.4.8\u300115.5.7\u300116.0.7\u306a\u3069\u304c\u8106\u5f31\u6027\u89e3\u6d88\u306b\u5bfe\u5fdc\u3059\u308b\u30d0\u30fc\u30b8\u30e7\u30f3\u3067\u3059\uff08<a href=\"https:\/\/nextjs.org\/blog\/CVE-2025-66478\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*11<\/a>\uff09\u3002\u3053\u308c\u3089\u306e\u4fee\u6b63\u7248\u3067\u306f\u3001react-server-dom\uff5e\u7cfb\u30d1\u30c3\u30b1\u30fc\u30b8\u306eRSC\u5b9f\u88c5\u304c\u5f37\u5316\u3055\u308c\u3001\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u306e\u6b20\u9665\u304c\u4fee\u6b63\u3055\u308c\u3066\u3044\u307e\u3059\u3002\u4eca\u5f8c\u65b0\u305f\u306a\u8106\u5f31\u6027\u304c\u767a\u898b\u3055\u308c\u308b\u53ef\u80fd\u6027\u3082\u3042\u308b\u305f\u3081\u3001\u5358\u306a\u308b\u30d1\u30c3\u30c1\u9069\u7528\u3060\u3051\u3067\u306a\u304f\u3001\u77ed\u671f\u9593\u3067\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3092\u7e70\u308a\u8fd4\u3059\u7ba1\u7406\u4f53\u5236\u304c\u6c42\u3081\u3089\u308c\u307e\u3059\u3002\u7279\u306b\u30af\u30e9\u30a6\u30c9\u4e0a\u3067\u81ea\u52d5\u30c7\u30d7\u30ed\u30a4\u3092\u884c\u3063\u3066\u3044\u308b\u5834\u5408\u3001\u601d\u308f\u306c\u30b3\u30f3\u30dd\u30fc\u30cd\u30f3\u30c8\u304c\u8106\u5f31\u6027\u3092\u542b\u3080\u30e9\u30a4\u30d6\u30e9\u30ea\u306b\u30ea\u30f3\u30af\u3057\u3066\u3044\u308b\u30b1\u30fc\u30b9\u3092\u898b\u843d\u3068\u3055\u306a\u3044\u3088\u3046\u6ce8\u610f\u304c\u5fc5\u8981\u3067\u3059\u3002<\/p>\n<h3>\u30b5\u30fc\u30c9\u30d1\u30fc\u30c6\u30a3\u30d5\u30ec\u30fc\u30e0\u30ef\u30fc\u30af\u3068\u4f9d\u5b58\u95a2\u4fc2\u7ba1\u7406<\/h3>\n<p>React\u3084Next.js\u672c\u4f53\u3060\u3051\u3067\u306a\u304f\u3001\u5468\u8fba\u30c4\u30fc\u30eb\u3084\u30d7\u30e9\u30b0\u30a4\u30f3\u3001\u30b5\u30fc\u30c9\u30d1\u30fc\u30c6\u30a3\u88fd\u30d5\u30ec\u30fc\u30e0\u30ef\u30fc\u30af\u306b\u3082\u6ce8\u610f\u304c\u5fc5\u8981\u3067\u3059\u3002\u4f8b\u3048\u3070Expo\u3001React Router\u3001Waku\u3001@parcel\/rsc\u3001@vitejs\/plugin-rsc\u306a\u3069\u3001RSC\u30b5\u30dd\u30fc\u30c8\u3092\u542b\u3080\u3055\u307e\u3056\u307e\u306a\u30d1\u30c3\u30b1\u30fc\u30b8\u304c\u8106\u5f31\u6027\u306e\u5f71\u97ff\u3092\u53d7\u3051\u308b\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\uff08<a href=\"https:\/\/security.berkeley.edu\/news\/critical-vulnerabilities-react-and-nextjs\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*12<\/a>\uff09\u3002\u4f9d\u5b58\u30c4\u30ea\u30fc\u3092\u53ef\u8996\u5316\u3057\u3001\u554f\u984c\u306e\u3042\u308b\u30e9\u30a4\u30d6\u30e9\u30ea\u304c\u542b\u307e\u308c\u3066\u3044\u306a\u3044\u304b\u3092\u5e38\u306b\u78ba\u8a8d\u3059\u308b\u3053\u3068\u304c\u5927\u5207\u3067\u3059\u3002npm audit\u306a\u3069\u306e\u30b3\u30de\u30f3\u30c9\u3067\u8106\u5f31\u6027\u30ec\u30dd\u30fc\u30c8\u3092\u6d3b\u7528\u3057\u3001\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3067\u304d\u308b\u3082\u306e\u306f\u901f\u3084\u304b\u306b\u66f4\u65b0\u3057\u307e\u3057\u3087\u3046\u3002\u3055\u3089\u306b\u3001CI\/CD\u30d1\u30a4\u30d7\u30e9\u30a4\u30f3\u306b\u81ea\u52d5\u30c6\u30b9\u30c8\u3068\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30b9\u30ad\u30e3\u30f3\u3092\u7d44\u307f\u8fbc\u307f\u3001\u672c\u756a\u74b0\u5883\u306b\u30ea\u30ea\u30fc\u30b9\u3059\u308b\u524d\u306b\u30a2\u30e9\u30fc\u30c8\u3092\u53d7\u3051\u53d6\u308c\u308b\u4f53\u5236\u3092\u6574\u3048\u308b\u3053\u3068\u3067\u3001DX\u63a8\u9032\u306e\u9ad8\u901f\u5316\u3068\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u5bfe\u7b56\u3092\u4e21\u7acb\u3067\u304d\u307e\u3059\u3002<\/p>\n<h3>DX\u63a8\u9032\u30fb\u958b\u767a\u30b9\u30d4\u30fc\u30c9\u3068\u30d1\u30c3\u30c1\u904b\u7528\u306e\u4e21\u7acb<\/h3>\n<p>DX\u306e\u53d6\u308a\u7d44\u307f\u306f\u30b9\u30d4\u30fc\u30c9\u304c\u91cd\u8996\u3055\u308c\u307e\u3059\u304c\u3001\u5b89\u5168\u306a\u958b\u767a\u4f53\u5236\u306a\u3057\u306b\u62e1\u5927\u3092\u7d9a\u3051\u308b\u3068\u8106\u5f31\u6027\u306e\u6e29\u5e8a\u3068\u306a\u308b\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\u3002\u30d1\u30c3\u30c1\u9069\u7528\u304c\u6025\u304c\u308c\u308b\u8106\u5f31\u6027\u304c\u516c\u8868\u3055\u308c\u305f\u5834\u5408\u3001\u53e4\u3044\u30d0\u30fc\u30b8\u30e7\u30f3\u3092\u904b\u7528\u3057\u7d9a\u3051\u308b\u30c1\u30fc\u30e0\u304c\u3044\u308b\u3068\u7d44\u7e54\u5168\u4f53\u304c\u5371\u967a\u306b\u6652\u3055\u308c\u307e\u3059\u3002\u5237\u65b0\u3057\u305f\u30a2\u30fc\u30ad\u30c6\u30af\u30c1\u30e3\u3078\u306e\u79fb\u884c\u6642\u306b\u306f\u3001\u6700\u65b0\u306e\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30d1\u30c3\u30c1\u3092\u524d\u63d0\u3068\u3057\u305f\u30b3\u30f3\u30c6\u30ca\u30c6\u30f3\u30d7\u30ec\u30fc\u30c8\u3084\u30a4\u30e1\u30fc\u30b8\u3092\u4f7f\u7528\u3057\u3001\u30ed\u30fc\u30ea\u30f3\u30b0\u30a2\u30c3\u30d7\u30c7\u30fc\u30c8\u3092\u81ea\u52d5\u5316\u3059\u308b\u65b9\u6cd5\u304c\u6709\u52b9\u3067\u3059\uff08<a href=\"https:\/\/www.ipa.go.jp\/security\/security-alert\/2025\/alert20251209.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*3<\/a>\uff09\u3002\u793e\u5185\u3067\u8907\u6570\u306e\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u3092\u540c\u6642\u958b\u767a\u3057\u3066\u3044\u308b\u5834\u5408\u3001React\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u30a2\u30c3\u30d7\u304c\u5f8c\u56de\u3057\u306b\u306a\u308a\u304c\u3061\u3067\u3059\u304c\u3001\u8106\u5f31\u6027\u306e\u4fee\u6b63\u306f\u6700\u512a\u5148\u4e8b\u9805\u3067\u3059\u3002\u624b\u9593\u306e\u304b\u304b\u308b\u30d1\u30c3\u30c1\u9069\u7528\u3092\u52b9\u7387\u5316\u3057\u3001\u73fe\u5834\u306e\u62b5\u6297\u611f\u3092\u6700\u5c0f\u9650\u306b\u6291\u3048\u308b\u3053\u3068\u304c\u7d44\u7e54\u7684\u8ab2\u984c\u3068\u306a\u308a\u307e\u3059\u3002<\/p>\n<h2>React2Shell\u306b\u5099\u3048\u308b\u691c\u77e5\u30fb\u76e3\u8996\u3068\u30a4\u30f3\u30b7\u30c7\u30f3\u30c8\u5bfe\u5fdc<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-5-2025-12-13-09-43-25.jpg\" alt=\"React2Shell\u306b\u5099\u3048\u308b\u691c\u77e5\u30fb\u76e3\u8996\u3068\u30a4\u30f3\u30b7\u30c7\u30f3\u30c8\u5bfe\u5fdc\" width=\"1376\" height=\"768\" class=\"alignnone size-full wp-image-31979\" srcset=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-5-2025-12-13-09-43-25.jpg 1376w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-5-2025-12-13-09-43-25-300x167.jpg 300w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-5-2025-12-13-09-43-25-1024x572.jpg 1024w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-5-2025-12-13-09-43-25-768x429.jpg 768w\" sizes=\"auto, (max-width: 1376px) 100vw, 1376px\" \/><\/p>\n<h3>IoC\u3068\u30ed\u30b0\u76e3\u8996\u306e\u5177\u4f53\u7684\u306a\u30c1\u30a7\u30c3\u30af\u30dd\u30a4\u30f3\u30c8<\/h3>\n<p>\u653b\u6483\u306b\u65e9\u671f\u5bfe\u5fdc\u3059\u308b\u305f\u3081\u306b\u306f\u3001\u30a4\u30f3\u30b8\u30b1\u30fc\u30bf\uff08IoC\uff09\u3092\u628a\u63e1\u3057\u3001\u30ed\u30b0\u76e3\u8996\u3092\u5f37\u5316\u3059\u308b\u3053\u3068\u304c\u91cd\u8981\u3067\u3059\u3002Apache\u3084Nginx\u306a\u3069\u306e\u30a2\u30af\u30bb\u30b9\u30ed\u30b0\u3092\u5b9a\u671f\u7684\u306b\u5206\u6790\u3057\u3001next-action\u30d8\u30c3\u30c0\u3084rsc-action-id\u30d8\u30c3\u30c0\u306a\u3069\u4e0d\u5be9\u306aHTTP\u30ea\u30af\u30a8\u30b9\u30c8\u304c\u767a\u751f\u3057\u3066\u3044\u306a\u3044\u304b\u78ba\u8a8d\u3057\u307e\u3059\uff08<a href=\"https:\/\/aws.amazon.com\/blogs\/security\/china-nexus-cyber-threat-groups-rapidly-exploit-react2shell-vulnerability-cve-2025-55182\/\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*5<\/a>\uff09\u3002\u3055\u3089\u306b\/tmp\u4ee5\u4e0b\u3078\u306e\u30d5\u30a1\u30a4\u30eb\u66f8\u304d\u8fbc\u307f\u3084\u3001\/etc\/passwd\u306e\u8aad\u307f\u53d6\u308a\u8a66\u884c\u304c\u691c\u51fa\u3055\u308c\u305f\u5834\u5408\u3001\u30ea\u30e2\u30fc\u30c8\u30b3\u30fc\u30c9\u5b9f\u884c\u306b\u6210\u529f\u3057\u3066\u3044\u308b\u53ef\u80fd\u6027\u304c\u9ad8\u3044\u3068\u8003\u3048\u3089\u308c\u307e\u3059\u3002\u4f01\u696d\u306e\u5185\u90e8\u30cd\u30c3\u30c8\u30ef\u30fc\u30af\u3078\u4e0d\u6b63\u30ea\u30af\u30a8\u30b9\u30c8\u304c\u6d41\u5165\u3057\u3066\u3044\u306a\u3044\u304b\u3001\u4fb5\u5165\u691c\u77e5\u30b7\u30b9\u30c6\u30e0\uff08IDS\uff09\u3084\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u5074\u306e\u30ed\u30b0\u3001\u30af\u30e9\u30a6\u30c9\u4e0a\u306e\u8a8d\u8a3c\u30ed\u30b0\u306a\u3069\u8907\u6570\u30bd\u30fc\u30b9\u3092\u30af\u30ed\u30b9\u30c1\u30a7\u30c3\u30af\u3057\u3001\u6f5c\u5728\u7684\u306a\u88ab\u5bb3\u7bc4\u56f2\u3092\u898b\u9003\u3055\u306a\u3044\u3088\u3046\u306b\u3057\u307e\u3057\u3087\u3046\u3002<\/p>\n<h3>Surface Scanner\u306a\u3069\u691c\u51fa\u30c4\u30fc\u30eb\u306e\u6d3b\u7528<\/h3>\n<p>React2Shell\u3078\u306e\u4e8b\u524d\u5bfe\u5fdc\u7b56\u3068\u3057\u3066Surface Scanner\u306e\u3088\u3046\u306a\u5c02\u7528\u30c4\u30fc\u30eb\u3082\u516c\u958b\u3055\u308c\u3066\u3044\u307e\u3059\u3002Python\u30d9\u30fc\u30b9\u306e\u30b9\u30af\u30ea\u30d7\u30c8\u3067RSC\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u304c\u9732\u51fa\u3057\u3066\u3044\u308b\u304b\u3069\u3046\u304b\u3092\u691c\u51fa\u3057\u3001\u8106\u5f31\u6027\u306e\u6709\u7121\u3092\u5927\u307e\u304b\u306b\u5224\u5b9a\u3059\u308b\u4ed5\u7d44\u307f\u3067\u3059\uff08<a href=\"https:\/\/cyberpress.org\/new-scanner-tool-for-detecting\/\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*13<\/a>\uff09\u3002\u305f\u3060\u3057\u3001\u56fa\u5b9a\u30da\u30a4\u30ed\u30fc\u30c9\u3060\u3051\u3067\u306f\u30d0\u30f3\u30c9\u30e9\u30fc\u3084\u6700\u9069\u5316\u306e\u5f71\u97ff\u3067\u691c\u51fa\u3057\u304d\u308c\u306a\u3044\u5834\u5408\u304c\u3042\u308b\u305f\u3081\u3001\u691c\u77e5\u30c4\u30fc\u30eb\u306e\u7d50\u679c\u3092\u904e\u4fe1\u305b\u305a\u3001\u7db2\u7f85\u7684\u306a\u7ba1\u7406\u3084\u30d1\u30c3\u30c1\u9069\u7528\u3092\u6020\u3089\u306a\u3044\u3053\u3068\u304c\u5927\u5207\u3067\u3059\u3002\u5b9f\u969b\u306e\u74b0\u5883\u3067PoC\u30ec\u30d9\u30eb\u306e\u653b\u6483\u3092\u8a66\u3059\u5834\u5408\u306f\u3001\u5b89\u5168\u306a\u691c\u8a3c\u74b0\u5883\u3092\u7528\u610f\u3059\u308b\u306a\u3069\u904b\u7528\u4e0a\u306e\u914d\u616e\u3082\u5fc5\u8981\u3067\u3059\u3002<\/p>\n<h3>\u30af\u30e9\u30a6\u30c9WAF\u3068\u591a\u5c64\u9632\u5fa1\u306b\u3088\u308b\u7de9\u548c\u7b56<\/h3>\n<p>React2Shell\u306e\u7de9\u548c\u7b56\u3068\u3057\u3066\u3001\u30af\u30e9\u30a6\u30c9WAF\u306e\u5c0e\u5165\u3084\u5883\u754c\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u306e\u5f37\u5316\u304c\u63a8\u5968\u3055\u308c\u307e\u3059\u3002AWS\u306f\u30de\u30cd\u30fc\u30b8\u30c9\u30eb\u30fc\u30eb\u306e\u30d0\u30fc\u30b8\u30e7\u30f3\u30a2\u30c3\u30d7\u306b\u3088\u3063\u3066\u4e00\u90e8\u306e\u653b\u6483\u30d1\u30bf\u30fc\u30f3\u3092\u30d6\u30ed\u30c3\u30af\u3059\u308b\u6a5f\u80fd\u3092\u63d0\u4f9b\u3057\u3066\u3044\u308b\u307b\u304b\u3001Azure\u3084Google Cloud\u3067\u3082\u72ec\u81ea\u306eWAF\u30eb\u30fc\u30eb\u3092\u767a\u884c\u3057\u3066\u3044\u307e\u3059\uff08<a href=\"https:\/\/techcommunity.microsoft.com\/blog\/azurenetworksecurityblog\/protect-against-react-rsc-cve-2025-55182-with-azure-web-application-firewall-waf\/4475291\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*14<\/a>\uff09\uff08<a href=\"https:\/\/cloud.google.com\/blog\/products\/identity-security\/responding-to-cve-2025-55182\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*15<\/a>\uff09\u3002\u305f\u3060\u3057\u3001WAF\u306f\u8ffd\u52a0\u9632\u5fa1\u3067\u3042\u308a\u3001\u6839\u672c\u7684\u5bfe\u7b56\u3067\u3042\u308b\u30d1\u30c3\u30c1\u9069\u7528\u3068\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u30b3\u30fc\u30c9\u306e\u4fee\u6b63\u3092\u7f6e\u304d\u63db\u3048\u308b\u3082\u306e\u3067\u306f\u3042\u308a\u307e\u305b\u3093\u3002\u8907\u6570\u306e\u9632\u5fa1\u30ec\u30a4\u30e4\u30fc\u3092\u91cd\u306d\u308b\u3053\u3068\u3067\u3001\u4e07\u304c\u4e00\u8106\u5f31\u306a\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u306b\u30a2\u30af\u30bb\u30b9\u3092\u8a31\u3057\u3066\u3057\u307e\u3063\u3066\u3082\u3001\u30ea\u30b9\u30af\u3092\u6700\u5c0f\u5316\u3067\u304d\u308b\u53ef\u80fd\u6027\u304c\u3042\u308a\u307e\u3059\u3002CISA\u306eKnown Exploited Vulnerabilities\u30ab\u30bf\u30ed\u30b0\u306b\u672c\u8106\u5f31\u6027\u304c\u767b\u9332\u3055\u308c\u3001\u9023\u90a6\u6a5f\u95a2\u306fBOD 22-01\u306b\u57fa\u3065\u304f\u4fee\u6b63\u671f\u9650\u304c\u8a2d\u5b9a\u3055\u308c\u308b\u306a\u3069\u3001\u4e16\u754c\u7684\u306b\u591a\u5c64\u5bfe\u7b56\u304c\u9032\u3093\u3067\u3044\u307e\u3059\uff08<a href=\"https:\/\/www.cisa.gov\/news-events\/alerts\/2025\/12\/05\/cisa-adds-one-known-exploited-vulnerability-catalog\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*16<\/a>\uff09\u3002<\/p>\n<h2>\u751f\u6210AI\u30fbDX\u30d7\u30ed\u30b8\u30a7\u30af\u30c8\u306b\u304a\u3051\u308bReact2Shell\u30ea\u30b9\u30af\u7ba1\u7406\u306e\u5b9f\u8df5<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-6-2025-12-13-09-43-25.jpg\" alt=\"\u751f\u6210AI\u30fbDX\u30d7\u30ed\u30b8\u30a7\u30af\u30c8\u306b\u304a\u3051\u308bReact2Shell\u30ea\u30b9\u30af\u7ba1\u7406\u306e\u5b9f\u8df5\" width=\"1376\" height=\"768\" class=\"alignnone size-full wp-image-31978\" srcset=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-6-2025-12-13-09-43-25.jpg 1376w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-6-2025-12-13-09-43-25-300x167.jpg 300w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-6-2025-12-13-09-43-25-1024x572.jpg 1024w, https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/chapter-cmj3j2zbq0002a1982f96xqpu-6-2025-12-13-09-43-25-768x429.jpg 768w\" sizes=\"auto, (max-width: 1376px) 100vw, 1376px\" \/><\/p>\n<h3>AI\u30b5\u30fc\u30d3\u30b9\u8a2d\u8a08\u306b\u304a\u3051\u308bRSC\u5229\u7528\u3068\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8981\u4ef6\u5b9a\u7fa9<\/h3>\n<p>\u751f\u6210AI\u3092\u7d44\u307f\u8fbc\u3080\u30d7\u30ed\u30b8\u30a7\u30af\u30c8\u3067\u306f\u3001\u30e6\u30fc\u30b6\u30fc\u3068\u306e\u5bfe\u8a71\u3092\u30ea\u30a2\u30eb\u30bf\u30a4\u30e0\u306b\u51e6\u7406\u3059\u308b\u305f\u3081\u9ad8\u5ea6\u306a\u30b5\u30fc\u30d0\u30fc\u30b5\u30a4\u30c9\u6280\u8853\u3092\u6d3b\u7528\u3057\u307e\u3059\u3002React Server Components\u3092\u5229\u7528\u3057\u305f\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u306f\u3001\u30af\u30e9\u30a4\u30a2\u30f3\u30c8\u3078\u306e\u30c7\u30fc\u30bf\u91cf\u3092\u6e1b\u3089\u3059\u5229\u70b9\u304c\u3042\u308b\u4e00\u65b9\u3001\u30c7\u30b7\u30ea\u30a2\u30e9\u30a4\u30ba\u304c\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u30db\u30fc\u30eb\u3068\u306a\u308b\u4e8b\u4f8b\u3082\u898b\u3089\u308c\u307e\u3059\u3002AI\u5c0e\u5165\u30d5\u30a7\u30fc\u30ba\u304b\u3089\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u8981\u4ef6\u5b9a\u7fa9\u3092\u884c\u3044\u3001RSC\u3092\u4f7f\u3046\u5404\u30e2\u30b8\u30e5\u30fc\u30eb\u3067\u306e\u30c7\u30fc\u30bf\u51e6\u7406\u30d5\u30ed\u30fc\u3092\u660e\u78ba\u5316\u3059\u308b\u3053\u3068\u304c\u91cd\u8981\u3067\u3059\uff08<a href=\"https:\/\/cloud.google.com\/blog\/products\/identity-security\/responding-to-cve-2025-55182\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*15<\/a>\uff09\u3002\u3055\u3089\u306b\u3001\u8010\u969c\u5bb3\u6027\u306e\u89b3\u70b9\u3067\u8106\u5f31\u6027\u304c\u9855\u5728\u5316\u3057\u305f\u969b\u3067\u3082\u696d\u52d9\u7d99\u7d9a\u304c\u3067\u304d\u308b\u3088\u3046\u3001\u8ca0\u8377\u5206\u6563\u3084\u30b5\u30fc\u30d0\u30fc\u5206\u96e2\u306a\u3069\u306e\u30a2\u30fc\u30ad\u30c6\u30af\u30c1\u30e3\u8a2d\u8a08\u3092\u898b\u76f4\u3059\u3053\u3068\u304c\u52b9\u679c\u7684\u3067\u3059\u3002<\/p>\n<h3>LLM\u30a8\u30fc\u30b8\u30a7\u30f3\u30c8\u30fb\u696d\u52d9\u81ea\u52d5\u5316\u57fa\u76e4\u3078\u306e\u5f71\u97ff\u8a55\u4fa1\u30d7\u30ed\u30bb\u30b9<\/h3>\n<p>\u30ed\u30fc\u30ab\u30eb\u306eLLM\u30a8\u30fc\u30b8\u30a7\u30f3\u30c8\u3092\u52d5\u304b\u3059\u5834\u5408\u3084\u696d\u52d9\u81ea\u52d5\u5316\u306e\u30d5\u30ec\u30fc\u30e0\u30ef\u30fc\u30af\u3092\u7ba1\u7406\u3059\u308b\u969b\u3001\u5185\u90e8\u7684\u306bReact\u3084Next.js\u3092\u63a1\u7528\u3059\u308b\u30b1\u30fc\u30b9\u304c\u5897\u3048\u3066\u3044\u307e\u3059\u3002React2Shell\u306f\u8a8d\u8a3c\u306a\u3057\u3067\u306eRCE\u3068\u3044\u3046\u81f4\u547d\u7684\u306a\u5c5e\u6027\u3092\u6301\u3064\u305f\u3081\u3001\u696d\u52d9\u81ea\u52d5\u5316\u30ef\u30fc\u30af\u30d5\u30ed\u30fc\u306b\u7d44\u307f\u8fbc\u3080\u8981\u7d20\u304c\u3042\u308b\u5834\u5408\u3001\u5f71\u97ff\u8a55\u4fa1\u306e\u512a\u5148\u5ea6\u304c\u9ad8\u307e\u308a\u307e\u3059\uff08<a href=\"https:\/\/www.rapid7.com\/blog\/post\/etr-react2shell-cve-2025-55182-critical-unauthenticated-rce-affecting-react-server-components\/\" target=\"_blank\" rel=\"noopener noreferrer\">\u53c2\u7167*17<\/a>\uff09\u3002\u8a55\u4fa1\u30d7\u30ed\u30bb\u30b9\u3068\u3057\u3066\u306f\u3001\uff081\uff09RSC\u304c\u6709\u52b9\u5316\u3055\u308c\u3066\u3044\u308b\u30b3\u30f3\u30dd\u30fc\u30cd\u30f3\u30c8\u306e\u6d17\u3044\u51fa\u3057\u3001\uff082\uff09AI\u95a2\u9023\u30e2\u30b8\u30e5\u30fc\u30eb\u3078\u306e\u30c7\u30fc\u30bf\u9001\u4fe1\u7d4c\u8def\u3001\uff083\uff09\u30af\u30e9\u30a6\u30c9\u30b5\u30fc\u30d3\u30b9\u3068\u306e\u9023\u643a\u7b87\u6240\u3001\uff084\uff09\u30d1\u30c3\u30c1\uff06\u4f9d\u5b58\u95a2\u4fc2\u7ba1\u7406\u306e\u62c5\u5f53\u5272\u308a\u5f53\u3066\u3001\u306e\u9806\u3067\u5f71\u97ff\u7bc4\u56f2\u3092\u78ba\u8a8d\u3057\u307e\u3059\u3002\u7279\u306b\u30ea\u30bd\u30fc\u30b9\u3078\u306e\u30a2\u30af\u30bb\u30b9\u6a29\u9650\u304c\u5927\u304d\u3044\u81ea\u52d5\u5316\u57fa\u76e4\u306f\u3001\u5916\u90e8\u304b\u3089\u306e\u4e0d\u6b63\u30b3\u30fc\u30c9\u5b9f\u884c\u3092\u8a31\u3059\u3068\u88ab\u5bb3\u304c\u5e83\u7bc4\u306b\u53ca\u3076\u53ef\u80fd\u6027\u304c\u3042\u308b\u70b9\u306b\u6ce8\u610f\u304c\u5fc5\u8981\u3067\u3059\u3002<\/p>\n<h3>\u7d44\u7e54\u7684\u306a\u8106\u5f31\u6027\u7ba1\u7406\u3068\u6539\u5584\u30b5\u30a4\u30af\u30eb\u306e\u78ba\u7acb<\/h3>\n<p>React2Shell\u304cDX\u3084\u751f\u6210AI\u306e\u6587\u8108\u307e\u3067\u6ce2\u53ca\u3057\u305f\u3088\u3046\u306b\u3001\u7d44\u7e54\u5168\u4f53\u306e\u30b7\u30b9\u30c6\u30e0\u8a2d\u8a08\u306b\u6f5c\u3080\u30ea\u30b9\u30af\u3092\u628a\u63e1\u3059\u308b\u59ff\u52e2\u304c\u4eca\u5f8c\u3055\u3089\u306b\u91cd\u8981\u306b\u306a\u308a\u307e\u3059\u3002\u30d1\u30c3\u30c1\u9069\u7528\u3092\u6280\u8853\u62c5\u5f53\u3060\u3051\u306b\u4efb\u305b\u308b\u306e\u3067\u306f\u306a\u304f\u3001\u7d4c\u55b6\u5c64\u3082\u91cd\u8981\u5ea6\u3092\u7406\u89e3\u3057\u305f\u4e0a\u3067\u5fc5\u8981\u306a\u30ea\u30bd\u30fc\u30b9\u3092\u78ba\u4fdd\u3057\u3001\u7d44\u7e54\u7684\u306b\u8106\u5f31\u6027\u7ba1\u7406\u3092\u904b\u7528\u3059\u308b\u3053\u3068\u304c\u6c42\u3081\u3089\u308c\u307e\u3059\u3002\u7d99\u7d9a\u7684\u306a\u6539\u5584\u30b5\u30a4\u30af\u30eb\u3092\u56de\u3059\u305f\u3081\u306b\u306f\u3001\u8106\u5f31\u6027\u60c5\u5831\u306e\u65e9\u671f\u628a\u63e1\u3001\u30ea\u30ea\u30fc\u30b9\u7ba1\u7406\u624b\u9806\u306e\u81ea\u52d5\u5316\u3001\u30a4\u30f3\u30b7\u30c7\u30f3\u30c8\u6642\u306e\u5831\u544a\u30d5\u30ed\u30fc\u306e\u6700\u9069\u5316\u304c\u30dd\u30a4\u30f3\u30c8\u3067\u3059\u3002DX\u63a8\u9032\u306b\u304a\u3044\u3066\u306f\u30b9\u30d4\u30fc\u30c9\u3068\u5b89\u5168\u6027\u306e\u30d0\u30e9\u30f3\u30b9\u3092\u3068\u308b\u3053\u3068\u304c\u91cd\u8981\u3067\u3042\u308a\u3001React2Shell\u306e\u3088\u3046\u306a\u81f4\u547d\u7684\u8106\u5f31\u6027\u3092\u6559\u8a13\u306b\u3001\u5b9a\u671f\u7684\u306a\u30d1\u30c3\u30c1\u4f5c\u696d\u3084AI\u30fb\u696d\u52d9\u81ea\u52d5\u5316\u306e\u691c\u8a3c\u74b0\u5883\u6574\u5099\u3092\u9032\u3081\u3066\u3044\u304f\u3053\u3068\u304c\u63a8\u5968\u3055\u308c\u307e\u3059\u3002<\/p>\n<h2>\u304a\u308f\u308a\u306b\uff1aReact2Shell\u5bfe\u5fdc\u3092\u8d77\u70b9\u3068\u3057\u305f\u5b89\u5168\u306a\u751f\u6210AI\u30fbDX\u63a8\u9032\u3078<\/h2>\n<p>React2Shell\uff08CVE-2025-55182\uff09\u306f\u3001React Server Components\u306e\u8106\u5f31\u6027\u304b\u3089\u751f\u3058\u308b\u91cd\u5927\u306a\u30ea\u30b9\u30af\u3067\u3059\u304c\u3001\u65e9\u671f\u306e\u30d1\u30c3\u30c1\u9069\u7528\u3068\u591a\u5c64\u9632\u5fa1\u306b\u3088\u3063\u3066\u5bfe\u5fdc\u304c\u53ef\u80fd\u3067\u3059\u3002\u56fd\u5185\u5916\u3067\u653b\u6483\u4e8b\u4f8b\u304c\u76f8\u6b21\u304e\u3001DX\u63a8\u9032\u306b\u5411\u3051\u305f\u30d7\u30e9\u30c3\u30c8\u30d5\u30a9\u30fc\u30e0\u305d\u306e\u3082\u306e\u3092\u8105\u304b\u3059\u4e8b\u614b\u3068\u306a\u3063\u3066\u3044\u307e\u3059\u3002<\/p>\n<p>\u3053\u306e\u8ab2\u984c\u3092\u5951\u6a5f\u3068\u3057\u3066\u3001\u4f9d\u5b58\u30e9\u30a4\u30d6\u30e9\u30ea\u306e\u68da\u5378\u3057\u3084\u30d1\u30c3\u30c1\u7ba1\u7406\u306e\u4ed5\u7d44\u307f\u3092\u518d\u70b9\u691c\u3059\u308b\u6a5f\u4f1a\u306b\u3082\u306a\u308a\u307e\u3059\u3002\u751f\u6210AI\u6642\u4ee3\u306b\u304a\u3044\u3066\u306f\u3001\u30a2\u30d7\u30ea\u30b1\u30fc\u30b7\u30e7\u30f3\u69cb\u6210\u3092\u6b63\u3057\u304f\u7406\u89e3\u3057\u3001\u5404\u7a2e\u30ea\u30b9\u30af\u3092\u7dcf\u5408\u7684\u306b\u5224\u65ad\u3059\u308b\u3053\u3068\u304c\u4e0d\u53ef\u6b20\u3067\u3059\u3002\u5b89\u5168\u306aDX\u3068\u52b9\u7387\u7684\u306aAI\u6d3b\u7528\u3092\u5b9f\u73fe\u3059\u308b\u305f\u3081\u3001\u672c\u8a18\u4e8b\u3092\u53c2\u8003\u306b\u5bfe\u7b56\u3092\u5f37\u5316\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<h2>\u76e3\u4fee\u8005<\/h2>\n<p>\u5b89\u9054\u88d5\u54c9\uff08\u3042\u3060\u3061 \u3086\u3046\u3084\uff09<\/p>\n<p>\u30c7\u30ed\u30a4\u30c8 \u30c8\u30fc\u30de\u30c4 \u30b3\u30f3\u30b5\u30eb\u30c6\u30a3\u30f3\u30b0\u306b\u3066\u54c1\u8cea\u30de\u30cd\u30b8\u30e1\u30f3\u30c8\u3001\u4eba\u4e8b\u306a\u3069\u306e\u5206\u91ce\u3067\u30b3\u30f3\u30b5\u30eb\u30c6\u30a3\u30f3\u30b0\u306b\u5f93\u4e8b\u3057\u305d\u306e\u5f8c\u3001\u76e3\u67fb\u6cd5\u4eba\u30c8\u30fc\u30de\u30c4\u306e\u4e2d\u5c0f\u4f01\u696d\u5411\u3051\u30b3\u30f3\u30b5\u30eb\u30c6\u30a3\u30f3\u30b0\u90e8\u9580\u306e\u7acb\u3061\u4e0a\u3052\u306b\u53c2\u753b\u3002\u5927\u962a\u652f\u793e\u9577\u3001\u6771\u4eac\u652f\u793e\u9577\u3092\u6b74\u4efb\u3057\u305f\u306e\u30612013\u5e745\u6708\u306bweb\u30de\u30fc\u30b1\u30c6\u30a3\u30f3\u30b0\u3001\u30b3\u30f3\u30c6\u30f3\u30c4\u5236\u4f5c\u3092\u884c\u3046\u300c\u30c6\u30a3\u30cd\u30af\u30c8\u682a\u5f0f\u4f1a\u793e\u300d\u3092\u8a2d\u7acb\u3002\u30d3\u30b8\u30cd\u30b9\u30e1\u30c7\u30a3\u30a2\u300cBooks&#038;Apps\u300d\u3092\u904b\u55b6\u3002<br \/>2023\u5e747\u6708\u306b\u751f\u6210AI\u30b3\u30f3\u30b5\u30eb\u30c6\u30a3\u30f3\u30b0\u3001\u304a\u3088\u3073AI\u30e1\u30c7\u30a3\u30a2\u904b\u55b6\u3092\u884c\u3046\u300c\u30ef\u30fc\u30af\u30ef\u30f3\u30c0\u30fc\u30b9\u682a\u5f0f\u4f1a\u793e\u300d\u3092\u8a2d\u7acb\u3002ICJ2\u53f7\u30d5\u30a1\u30f3\u30c9\u306b\u3088\u308b\u8abf\u9054\u3092\u5b9f\u65bd(1.3\u5104\u5186)\u3002<br \/>\u8457\u66f8\u300c\u982d\u306e\u3044\u3044\u4eba\u304c\u8a71\u3059\u524d\u306b\u8003\u3048\u3066\u3044\u308b\u3053\u3068\u300d \u304c\u300182\u4e07\u90e8\uff082025\u5e743\u6708\u6642\u70b9\uff09\u3092\u58f2\u308a\u4e0a\u3052\u308b\u3002<br \/>\uff08\u201c2023\u5e74\u30fb2024\u5e74\u4e0a\u534a\u671f\u306b\u65e5\u672c\u3067\u4e00\u756a\u58f2\u308c\u305f\u30d3\u30b8\u30cd\u30b9\u66f8\u201d\uff08\u30c8\u30fc\u30cf\u30f3\u8abf\u3079\uff0f\u65e5\u8ca9\u8abf\u3079\uff09\uff09<\/p>\n<h2>\u53c2\u7167<\/h2>\n<ul>\n<li>(*1) <a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2025-55182\" target=\"_blank\" rel=\"noopener noreferrer\">CVE-2025-55182<\/a><\/li>\n<li>(*2) <a href=\"https:\/\/www.tenable.com\/blog\/react2shell-cve-2025-55182-react-server-components-rce\" target=\"_blank\" rel=\"noopener noreferrer\">React2Shell RCE (CVE-2025-55182) Next.js (CVE-2025-66478) | Tenable\u00ae &#8211; CVE-2025-55182: Frequently Asked Questions About React2Shell: React Server Components Remote Code Execution Vulnerability<\/a><\/li>\n<li>(*3) <a href=\"https:\/\/www.ipa.go.jp\/security\/security-alert\/2025\/alert20251209.html\" target=\"_blank\" rel=\"noopener noreferrer\">IPA \u72ec\u7acb\u884c\u653f\u6cd5\u4eba \u60c5\u5831\u51e6\u7406\u63a8\u9032\u6a5f\u69cb &#8211; React Server Components\u306b\u304a\u3051\u308b\u8106\u5f31\u6027\u306b\u3064\u3044\u3066\uff08CVE-2025-55182\uff09<\/a><\/li>\n<li>(*4) <a href=\"https:\/\/www.jpcert.or.jp\/newsflash\/2025120501.html\" target=\"_blank\" rel=\"noopener noreferrer\">JPCERT\/CC &#8211; React Server Components\u306e\u8106\u5f31\u6027\uff08CVE-2025-55182\uff09\u306b\u3064\u3044\u3066<\/a><\/li>\n<li>(*5) <a href=\"https:\/\/aws.amazon.com\/blogs\/security\/china-nexus-cyber-threat-groups-rapidly-exploit-react2shell-vulnerability-cve-2025-55182\/\" target=\"_blank\" rel=\"noopener noreferrer\">Amazon Web Services &#8211; China-nexus cyber threat groups rapidly exploit React2Shell vulnerability (CVE-2025-55182)<\/a><\/li>\n<li>(*6) <a href=\"https:\/\/react.dev\/blog\/2025\/12\/03\/critical-security-vulnerability-in-react-server-components\" target=\"_blank\" rel=\"noopener noreferrer\">Critical Security Vulnerability in React Server Components \u2013 React<\/a><\/li>\n<li>(*7) <a href=\"https:\/\/www.wiz.io\/blog\/critical-vulnerability-in-react-cve-2025-55182\" target=\"_blank\" rel=\"noopener noreferrer\">wiz.io &#8211; React2Shell (CVE-2025-55182): Critical React Vulnerability<\/a><\/li>\n<li>(*8) <a href=\"https:\/\/www.trendmicro.com\/en_us\/research\/25\/l\/CVE-2025-55182-analysis-poc-itw.html\" target=\"_blank\" rel=\"noopener noreferrer\">Trend Micro &#8211; CVE-2025-55182: React2Shell Analysis, Proof-of-Concept Chaos, and In-the-Wild Exploitation<\/a><\/li>\n<li>(*9) <a href=\"https:\/\/news.yahoo.co.jp\/articles\/b4a2d642b7813fcee36e92a29b9e747ee0244716\" target=\"_blank\" rel=\"noopener noreferrer\">Yahoo!\u30cb\u30e5\u30fc\u30b9 &#8211; React\u306b\u91cd\u5927\u8106\u5f31\u6027\u3001\u4e2d\u56fd\u7cfb\u30cf\u30c3\u30ab\u30fc\u304c\u7121\u5dee\u5225\u653b\u6483\u2026\u97d3\u56fd\u5f53\u5c40\u3082\u7dca\u6025\u5bfe\u5fdc\uff08KOREA WAVE\uff09<\/a><\/li>\n<li>(*10) <a href=\"https:\/\/unit42.paloaltonetworks.com\/cve-2025-55182-react-and-cve-2025-66478-next\/\" target=\"_blank\" rel=\"noopener noreferrer\">Unit 42 &#8211; Exploitation of Critical Vulnerability in React Server Components (Updated December 12)<\/a><\/li>\n<li>(*11) <a href=\"https:\/\/nextjs.org\/blog\/CVE-2025-66478\" target=\"_blank\" rel=\"noopener noreferrer\">Security Advisory: CVE-2025-66478<\/a><\/li>\n<li>(*12) <a href=\"https:\/\/security.berkeley.edu\/news\/critical-vulnerabilities-react-and-nextjs\" target=\"_blank\" rel=\"noopener noreferrer\">Critical Vulnerabilities in React and Next.js<\/a><\/li>\n<li>(*13) <a href=\"https:\/\/cyberpress.org\/new-scanner-tool-for-detecting\/\" target=\"_blank\" rel=\"noopener noreferrer\">Cyber Security News &#8211; New Scanner Tool for Detecting Exposed ReactJS and Next.js RSC Endpoints (CVE-2025-55182)<\/a><\/li>\n<li>(*14) <a href=\"https:\/\/techcommunity.microsoft.com\/blog\/azurenetworksecurityblog\/protect-against-react-rsc-cve-2025-55182-with-azure-web-application-firewall-waf\/4475291\" target=\"_blank\" rel=\"noopener noreferrer\">TECHCOMMUNITY.MICROSOFT.COM &#8211; Protect against React RSC CVE-2025-55182 with Azure Web Application Firewall (WAF)<\/a><\/li>\n<li>(*15) <a href=\"https:\/\/cloud.google.com\/blog\/products\/identity-security\/responding-to-cve-2025-55182\" target=\"_blank\" rel=\"noopener noreferrer\">Google Cloud Blog &#8211; Responding to CVE-2025-55182<\/a><\/li>\n<li>(*16) <a href=\"https:\/\/www.cisa.gov\/news-events\/alerts\/2025\/12\/05\/cisa-adds-one-known-exploited-vulnerability-catalog\" target=\"_blank\" rel=\"noopener noreferrer\">Cybersecurity and Infrastructure Security Agency CISA &#8211; CISA Adds One Known Exploited Vulnerability to Catalog<\/a><\/li>\n<li>(*17) <a href=\"https:\/\/www.rapid7.com\/blog\/post\/etr-react2shell-cve-2025-55182-critical-unauthenticated-rce-affecting-react-server-components\/\" target=\"_blank\" rel=\"noopener noreferrer\">Rapid7 &#8211; React2Shell, Critical unauthenticated RCE affecting React Server Components (CVE-2025-55182)<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>\u306f\u3058\u3081\u306b\uff1aReact2Shell\uff08CVE-2025-55182\uff09\u304cDX\u3068\u751f\u6210AI\u306b\u3082\u305f\u3089\u3059\u30a4\u30f3\u30d1\u30af\u30c8 React2Shell\u3068\u3057\u3066\u77e5\u3089\u308c\u308bCVE-2025-55182\u306f\u3001React Server Components\u306b\u6f5c [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":31975,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[9],"tags":[],"class_list":["post-31981","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-article"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v21.8 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56 | WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d<\/title>\n<meta name=\"description\" content=\"\u306f\u3058\u3081\u306b\uff1aReact2Shell\uff08CVE-2025-55182\uff09\u304cDX\u3068\u751f\u6210AI\u306b\u3082\u305f\u3089\u3059\u30a4\u30f3\u30d1\u30af\u30c8\" \/>\n<meta property=\"og:locale\" content=\"ja_JP\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56 | WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d\" \/>\n<meta property=\"og:description\" content=\"\u306f\u3058\u3081\u306b\uff1aReact2Shell\uff08CVE-2025-55182\uff09\u304cDX\u3068\u751f\u6210AI\u306b\u3082\u305f\u3089\u3059\u30a4\u30f3\u30d1\u30af\u30c8\" \/>\n<meta property=\"og:url\" content=\"https:\/\/workwonders.jp\/media\/archives\/31981\/\" \/>\n<meta property=\"og:site_name\" content=\"WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d\" \/>\n<meta property=\"article:published_time\" content=\"2025-12-13T00:44:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/thumbnail-cmj3j2zbq0002a1982f96xqpu-2025-12-13-09-43-24.jpg\" \/>\n<meta name=\"author\" content=\"WorkWonders\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u57f7\u7b46\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"WorkWonders\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u63a8\u5b9a\u8aad\u307f\u53d6\u308a\u6642\u9593\" \/>\n\t<meta name=\"twitter:data2\" content=\"2\u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/workwonders.jp\/media\/archives\/31981\/\",\"url\":\"https:\/\/workwonders.jp\/media\/archives\/31981\/\",\"name\":\"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56 | WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d\",\"isPartOf\":{\"@id\":\"https:\/\/workwonders.jp\/media\/#website\"},\"datePublished\":\"2025-12-13T00:44:00+00:00\",\"dateModified\":\"2025-12-13T00:44:00+00:00\",\"author\":{\"@id\":\"https:\/\/workwonders.jp\/media\/#\/schema\/person\/83892769e8eb4d66fb288f8a175eb048\"},\"description\":\"\u306f\u3058\u3081\u306b\uff1aReact2Shell\uff08CVE-2025-55182\uff09\u304cDX\u3068\u751f\u6210AI\u306b\u3082\u305f\u3089\u3059\u30a4\u30f3\u30d1\u30af\u30c8\",\"breadcrumb\":{\"@id\":\"https:\/\/workwonders.jp\/media\/archives\/31981\/#breadcrumb\"},\"inLanguage\":\"ja\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/workwonders.jp\/media\/archives\/31981\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/workwonders.jp\/media\/archives\/31981\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u30db\u30fc\u30e0\",\"item\":\"https:\/\/workwonders.jp\/media\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/workwonders.jp\/media\/#website\",\"url\":\"https:\/\/workwonders.jp\/media\/\",\"name\":\"WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d\",\"description\":\"WORK WONDERS\uff08\u30ef\u30fc\u30af\u30ef\u30f3\u30bf\u3099\u30fc\u30b9\uff09\u306f\u3001\u56fd\u5185\u5916\u306e\u751f\u6210AI\u6700\u65b0\u52d5\u5411\u3092\u30d4\u30c3\u30af\u30a2\u30c3\u30d7\u3059\u308b\u30e1\u30c7\u30a3\u30a2\u3067\u3059\u3002\u6700\u65b0\u306e\u751f\u6210AI\u306e\u60c5\u5831\u3092\u77e5\u308a\u305f\u3044\u3001\u3069\u306e\u3088\u3046\u306a\u9055\u3044\u304c\u3042\u308b\u306e\u304b\u77e5\u308a\u305f\u3044\u3001\u751f\u6210AI\u30b5\u30fc\u30d3\u30b9\u3092\u30a2\u30d4\u30fc\u30eb\u3057\u305f\u3044\u3001\u306a\u3069\u3055\u307e\u3056\u307e\u306a\u30cb\u30fc\u30ba\u3092\u6e80\u305f\u3059\u30b3\u30f3\u30c6\u30f3\u30c4\u3068\u4ed5\u7d44\u307f\u3092\u62e1\u5145\u3057\u3066\u3044\u307e\u3059\u3002\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/workwonders.jp\/media\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"ja\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/workwonders.jp\/media\/#\/schema\/person\/83892769e8eb4d66fb288f8a175eb048\",\"name\":\"WorkWonders\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"ja\",\"@id\":\"https:\/\/workwonders.jp\/media\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/a3e22f80f4816a678f87009e56c26053be894d9521bf0a73bc8cf456219d489e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/a3e22f80f4816a678f87009e56c26053be894d9521bf0a73bc8cf456219d489e?s=96&d=mm&r=g\",\"caption\":\"WorkWonders\"},\"url\":\"https:\/\/workwonders.jp\/media\/archives\/author\/api\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56 | WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d","description":"\u306f\u3058\u3081\u306b\uff1aReact2Shell\uff08CVE-2025-55182\uff09\u304cDX\u3068\u751f\u6210AI\u306b\u3082\u305f\u3089\u3059\u30a4\u30f3\u30d1\u30af\u30c8","og_locale":"ja_JP","og_type":"article","og_title":"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56 | WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d","og_description":"\u306f\u3058\u3081\u306b\uff1aReact2Shell\uff08CVE-2025-55182\uff09\u304cDX\u3068\u751f\u6210AI\u306b\u3082\u305f\u3089\u3059\u30a4\u30f3\u30d1\u30af\u30c8","og_url":"https:\/\/workwonders.jp\/media\/archives\/31981\/","og_site_name":"WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d","article_published_time":"2025-12-13T00:44:00+00:00","og_image":[{"url":"https:\/\/workwonders.jp\/media\/wp-content\/uploads\/2025\/12\/thumbnail-cmj3j2zbq0002a1982f96xqpu-2025-12-13-09-43-24.jpg"}],"author":"WorkWonders","twitter_card":"summary_large_image","twitter_misc":{"\u57f7\u7b46\u8005":"WorkWonders","\u63a8\u5b9a\u8aad\u307f\u53d6\u308a\u6642\u9593":"2\u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/workwonders.jp\/media\/archives\/31981\/","url":"https:\/\/workwonders.jp\/media\/archives\/31981\/","name":"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56 | WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d","isPartOf":{"@id":"https:\/\/workwonders.jp\/media\/#website"},"datePublished":"2025-12-13T00:44:00+00:00","dateModified":"2025-12-13T00:44:00+00:00","author":{"@id":"https:\/\/workwonders.jp\/media\/#\/schema\/person\/83892769e8eb4d66fb288f8a175eb048"},"description":"\u306f\u3058\u3081\u306b\uff1aReact2Shell\uff08CVE-2025-55182\uff09\u304cDX\u3068\u751f\u6210AI\u306b\u3082\u305f\u3089\u3059\u30a4\u30f3\u30d1\u30af\u30c8","breadcrumb":{"@id":"https:\/\/workwonders.jp\/media\/archives\/31981\/#breadcrumb"},"inLanguage":"ja","potentialAction":[{"@type":"ReadAction","target":["https:\/\/workwonders.jp\/media\/archives\/31981\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/workwonders.jp\/media\/archives\/31981\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u30db\u30fc\u30e0","item":"https:\/\/workwonders.jp\/media\/"},{"@type":"ListItem","position":2,"name":"React2Shell\uff08CVE-2025-55182\uff09\u306e\u8106\u5f31\u6027\u3068\u306f\uff1f\u751f\u6210AI\u6642\u4ee3\u306e\u653b\u6483\u3068\u5bfe\u7b56"}]},{"@type":"WebSite","@id":"https:\/\/workwonders.jp\/media\/#website","url":"https:\/\/workwonders.jp\/media\/","name":"WEB\u30e1\u30c7\u30a3\u30a2\u201cWORK WONDERS\u201d","description":"WORK WONDERS\uff08\u30ef\u30fc\u30af\u30ef\u30f3\u30bf\u3099\u30fc\u30b9\uff09\u306f\u3001\u56fd\u5185\u5916\u306e\u751f\u6210AI\u6700\u65b0\u52d5\u5411\u3092\u30d4\u30c3\u30af\u30a2\u30c3\u30d7\u3059\u308b\u30e1\u30c7\u30a3\u30a2\u3067\u3059\u3002\u6700\u65b0\u306e\u751f\u6210AI\u306e\u60c5\u5831\u3092\u77e5\u308a\u305f\u3044\u3001\u3069\u306e\u3088\u3046\u306a\u9055\u3044\u304c\u3042\u308b\u306e\u304b\u77e5\u308a\u305f\u3044\u3001\u751f\u6210AI\u30b5\u30fc\u30d3\u30b9\u3092\u30a2\u30d4\u30fc\u30eb\u3057\u305f\u3044\u3001\u306a\u3069\u3055\u307e\u3056\u307e\u306a\u30cb\u30fc\u30ba\u3092\u6e80\u305f\u3059\u30b3\u30f3\u30c6\u30f3\u30c4\u3068\u4ed5\u7d44\u307f\u3092\u62e1\u5145\u3057\u3066\u3044\u307e\u3059\u3002","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/workwonders.jp\/media\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"ja"},{"@type":"Person","@id":"https:\/\/workwonders.jp\/media\/#\/schema\/person\/83892769e8eb4d66fb288f8a175eb048","name":"WorkWonders","image":{"@type":"ImageObject","inLanguage":"ja","@id":"https:\/\/workwonders.jp\/media\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/a3e22f80f4816a678f87009e56c26053be894d9521bf0a73bc8cf456219d489e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/a3e22f80f4816a678f87009e56c26053be894d9521bf0a73bc8cf456219d489e?s=96&d=mm&r=g","caption":"WorkWonders"},"url":"https:\/\/workwonders.jp\/media\/archives\/author\/api\/"}]}},"meta_field":{"_thumbnail_id":["31975"]},"_links":{"self":[{"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/posts\/31981","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/comments?post=31981"}],"version-history":[{"count":0,"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/posts\/31981\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/media\/31975"}],"wp:attachment":[{"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/media?parent=31981"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/categories?post=31981"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/workwonders.jp\/media\/wp-json\/wp\/v2\/tags?post=31981"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}