Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ch3Tanbug

#37004of 53,619
7.5Total CVSS
Vulnerabilities · 1
PT-2025-24542
7.5
2025-06-09
Unknown · React-Native-Keys · CVE-2025-45001
**Name of the Vulnerable Software and Affected Versions** react-native-keys version 0.7.11 **Description** The issue concerns sensitive information disclosure, where encryption cipher and Base64 chunks are stored as plaintext in the compiled native binary. Attackers can extract these secrets using basic static analysis tools. **Recommendations** For react-native-keys version 0.7.11, consider removing or securely storing sensitive information to prevent disclosure. As a temporary workaround, restrict access to the compiled native binary to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.