react-native-keys@0.7.11 vulnerabilities

🔐 Make protected .ENVs variables

Direct Vulnerabilities

Known vulnerabilities in the react-native-keys package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Cleartext Storage of Sensitive Information

react-native-keys is a 🔐 Make protected .ENVs variables

Affected versions of this package are vulnerable to Cleartext Storage of Sensitive Information due to the storage of encryption cipher and Base64 chunks as plaintext in the compiled native binary. An attacker can extract these secrets using basic static analysis tools.

How to fix Cleartext Storage of Sensitive Information?

There is no fixed version for react-native-keys.

*