CVE-2026-53668Medium· 6.9▾ SunlitReact Router: Open redirect leading to XSS
▾ Sunlit zone — Low / medium · no exploitation signal
impact 38 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 28.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via GHSA
0.3%
0.3% → 0.3%
Last analysed / modified upstream
Applications with open redirects could permit attacker crafted links to result in redirects to unexpected external location or XSS vectors.
react-router >= 7.9.6, <= 7.12.0react-router-dom >= 6.30.2, <= 6.30.5Upgrade to a patched release:
react-router 7.13.0react-router-dom 6.30.6Connected by shared product, vendor, weakness, or advisory.
CVE-2026-53667Medium· 6.9React Router: RSCErrorHandler Missing Protocol Validation (XSS)
CVE-2026-53669MediumReact Router: Open redirect via backslash in <Link> and useNavigate (CVE-2025-68470 bypass)
CVE-2026-53666Medium· 6.1React Router: Arbitrary Constructor Injection via deserializeErrors() in React Router SSR Hydration
CVE-2026-33244Medium· 5.4React Router has stored XSS via unescaped Location header in prerendered redirect HTML
CVE-2026-21884High· 8.2React Router is a router for React
CVE-2025-59057High· 7.6React Router is a router for React