npm react-native-keys是美国npm公司的一个移动端环境变量安全库。 npm react-native-keys 0.7.11版本存在安全漏洞,该漏洞源于加密密码和Base64块以明文形式存储在编译后的原生二进制文件中,可能导致敏感信息泄露。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-5869 | 8.0 HIGH | RT-Thread lwp_syscall.c sys_recvfrom memory corruption |
| CVE-2025-5868 | 8.0 HIGH | RT-Thread lwp_syscall.c sys_thread_sigprocmask array index |
| CVE-2025-5867 | 8.0 HIGH | RT-Thread lwp_syscall.c csys_sendto null pointer dereference |
| CVE-2025-5866 | 8.0 HIGH | RT-Thread lwp_syscall.c sys_sigprocmask array index |
| CVE-2025-5865 | 8.0 HIGH | RT-Thread Parameter lwp_syscall.c sys_select memory corruption |
| CVE-2025-5874 | 4.6 MEDIUM | Redash getattr python.py run_query sandbox |
| CVE-2025-5895 | 4.3 MEDIUM | Metabase dom.js parseDataUri redos |
| CVE-2025-5892 | 4.3 MEDIUM | RocketChat parseMessage.js parseMessage redos |
| CVE-2025-5880 | 4.3 MEDIUM | Whistle get-temp-file path traversal |
| CVE-2025-5886 | 3.5 LOW | Emlog article.php cross site scripting |
| CVE-2025-46178 | CloudClassroom-PHP-Project 安全漏洞 | |
| CVE-2025-45055 | Silverpeas 安全漏洞 | |
| CVE-2025-45002 | Vigybag 安全漏洞 | |
| CVE-2024-46452 | VigyBag Open Source Online Shop 安全漏洞 | |
| CVE-2025-29627 | Keeper Security KeeperChat IOS Application 安全漏洞 | |
| CVE-2025-46041 | Anchor CMS 安全漏洞 |
No comments yet