CVE-2025-45001: Numan React-Native-Keys
High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.
react-native-keys 0.7.11 is vulnerable to sensitive information disclosure (remote) as encryption cipher and Base64 chunks are stored as plaintext in the compiled native binary. Attackers can extract these secrets using basic static analysis tools.
Affected products
- Numan React-Native-Keys: version 0.7.11 only
Published 2025-06-09. Last modified 2026-06-17.