0.7.12
4 years ago
1 months ago
Known vulnerabilities in the react-native-keys package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
react-native-keys is a 🔐 Make protected .ENVs variables Affected versions of this package are vulnerable to Cleartext Storage of Sensitive Information due to the storage of encryption cipher and Base64 chunks as plaintext in the compiled native binary. An attacker can extract these secrets using basic static analysis tools. How to fix Cleartext Storage of Sensitive Information? There is no fixed version for | * |