55.0.5
12 years ago
2 hours ago
Known vulnerabilities in the expo package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
expo is an umbrella package that contains the client-side code for accessing system functionality such as contacts, camera, and location in Expo apps. Affected versions of this package are vulnerable to Insufficiently Protected Credentials via the Note: The vulnerability has been mitigated by requiring users to confirm unverified callback URLs.
In addition, developers are advised to migrate from How to fix Insufficiently Protected Credentials? Upgrade | >=45.0.0 <48.0.0 |