TSB 2025-921 (Security): Remote code execution vulnerability in React Server Components

Learn more about the details communicated in TSB-2025-921.

Summary

Cloudera is issuing this TSB to provide updated information on the identified list of products containing the version of React affected by CVE-2025-55182.

Releases affected
  • Cloudera AI running Agent Studio 2.0.0 and below
Addressed in release/refresh/patch
  • Cloudera Agent Studio 2.1.0
Knowledge Base article
For the latest update on this issue see the corresponding Knowledge Base article: Technical Service Bulletin 2025-921 (Security): Remote code execution vulnerability in React Server Components