Filtered by vendor Linecorp
Subscribe
Total
84 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-43990 | 1 Linecorp | 1 Line | 2025-05-30 | N/A | 5.4 MEDIUM |
An issue in cherub-hair mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token. | |||||
CVE-2023-43991 | 1 Linecorp | 1 Line | 2025-05-30 | N/A | 5.4 MEDIUM |
An issue in PRIMA CLINIC mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token. | |||||
CVE-2023-48128 | 1 Linecorp | 1 Line | 2025-05-29 | N/A | 5.4 MEDIUM |
An issue in UNITED BOXING GYM mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token. | |||||
CVE-2023-48126 | 1 Linecorp | 1 Line | 2025-05-29 | N/A | 5.4 MEDIUM |
An issue in Luxe Beauty Clinic mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token. | |||||
CVE-2023-43304 | 1 Linecorp | 1 Line | 2025-05-28 | N/A | 8.2 HIGH |
An issue in PARK DANDAN mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token. | |||||
CVE-2021-38388 | 1 Linecorp | 1 Central Dogma | 2025-05-12 | 6.5 MEDIUM | 8.8 HIGH |
Central Dogma allows privilege escalation with mirroring to the internal dogma repository that has a file managing the authorization of the project. | |||||
CVE-2022-41568 | 1 Linecorp | 1 Line | 2025-04-25 | N/A | 7.5 HIGH |
LINE client for iOS before 12.17.0 might be crashed by sharing an invalid shared key of e2ee in group chat. | |||||
CVE-2024-1735 | 1 Linecorp | 1 Armeria | 2025-04-25 | N/A | N/A |
A vulnerability has been identified in armeria-saml versions less than 1.27.2, allowing the use of malicious SAML messages to bypass authentication. All users who rely on armeria-saml older than version 1.27.2 must upgrade to 1.27.2 or later. | |||||
CVE-2023-39737 | 1 Linecorp | 1 Matsuya | 2024-09-12 | N/A | 8.2 HIGH |
The leakage of the client secret in Matsuya Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages. | |||||
CVE-2023-39736 | 1 Linecorp | 1 Fukunaga Memberscard | 2024-09-12 | N/A | 8.2 HIGH |
The leakage of the client secret in Fukunaga_memberscard Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages. | |||||
CVE-2023-39739 | 1 Linecorp | 1 Regina Sweets\&bakery | 2024-09-12 | N/A | 8.2 HIGH |
The leakage of the client secret in REGINA SWEETS&BAKERY Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages. | |||||
CVE-2023-39735 | 1 Linecorp | 1 Uomasa Saiji New | 2024-09-12 | N/A | 8.2 HIGH |
The leakage of the client secret in Uomasa_Saiji_news Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages. | |||||
CVE-2023-38848 | 1 Linecorp | 1 Line | 2024-09-12 | N/A | 7.5 HIGH |
An issue in rmc R Beauty CLINIC Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. | |||||
CVE-2023-38846 | 1 Linecorp | 1 Line | 2024-09-12 | N/A | 7.5 HIGH |
An issue in Marbre Lapin Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. | |||||
CVE-2023-38847 | 1 Linecorp | 1 Line | 2024-09-12 | N/A | 7.5 HIGH |
An issue in CHRISTINA JAPAN Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. | |||||
CVE-2023-38845 | 1 Linecorp | 1 Line | 2024-09-12 | N/A | 7.5 HIGH |
An issue in Anglaise Company Anglaise.Company v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. | |||||
CVE-2023-38849 | 1 Linecorp | 1 Line | 2024-09-11 | N/A | 7.5 HIGH |
An issue in tire-sales Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. | |||||
CVE-2023-39734 | 1 Linecorp | 1 Trackdiner10\/10 Mc | 2024-09-11 | N/A | 8.2 HIGH |
The leakage of the client secret in VISION MEAT WORKS TrackDiner10/10_mc Line v13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages. | |||||
CVE-2023-39740 | 1 Linecorp | 1 Onigiriya-musubee | 2024-09-11 | N/A | 8.2 HIGH |
The leakage of the client secret in Onigiriya-musubee Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages. | |||||
CVE-2023-39733 | 1 Linecorp | 1 Tonton-tei | 2024-09-11 | N/A | 8.2 HIGH |
The leakage of the client secret in TonTon-Tei Line v13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages. |