CVE-2025-45001
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
react-native-keys 0.7.11 is vulnerable to sensitive information disclosure (remote) as encryption cipher and Base64 chunks are stored as plaintext in the compiled native binary. Attackers can extract these secrets using basic static analysis tools.
Affected (1)
Products: Numan: React Native Keys
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 0.7.11 |
References (3)
Source: cve@mitre.org
ExploitMitigationThird Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
ExploitMitigationThird Party Advisory
Timeline
No history available yet.