Логотип exploitDog
bind:CVE-2020-7696
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-7696

Количество 2

Количество 2

nvd логотип

CVE-2020-7696

больше 5 лет назад

This affects all versions of package react-native-fast-image. When an image with source={{uri: "...", headers: { host: "somehost.com", authorization: "..." }} is loaded, all other subsequent images will use the same headers, this can lead to signing credentials or other session tokens being leaked to other servers.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-6xhg-q9c8-rj32

больше 4 лет назад

Credential leak in react-native-fast-image

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-7696

This affects all versions of package react-native-fast-image. When an image with source={{uri: "...", headers: { host: "somehost.com", authorization: "..." }} is loaded, all other subsequent images will use the same headers, this can lead to signing credentials or other session tokens being leaked to other servers.

CVSS3: 5.3
0%
Низкий
больше 5 лет назад
github логотип
GHSA-6xhg-q9c8-rj32

Credential leak in react-native-fast-image

CVSS3: 5.3
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу