This affects all versions of package react-native-fast-image. When an image with source={{uri: "...", headers: { host: "somehost.com", authorization: "..." }} is loaded, all other subsequent images will use the same headers, this can lead to signing credentials or other session tokens being leaked to other servers.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: snyk

Published:

Updated: 2024-09-16T18:29:42.271Z

Reserved: 2020-01-21T00:00:00

Link: CVE-2020-7696

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-07-17T10:15:12.467

Modified: 2024-11-21T05:37:37.840

Link: CVE-2020-7696

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.