Vulnerabilities (CVE)

Filtered by vendor Linecorp Subscribe
Filtered by product Line
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-45559 1 Linecorp 1 Line 2024-01-10 N/A 8.2 HIGH
An issue in Tamaki_hamanoki Line v.13.6.1 allows attackers to send crafted notifications via leakage of the channel access token.
CVE-2023-43300 1 Linecorp 1 Line 2023-12-13 N/A 8.2 HIGH
An issue in urban_project mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVE-2023-43304 1 Linecorp 1 Line 2023-12-13 N/A 8.2 HIGH
An issue in PARK DANDAN mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVE-2023-43303 1 Linecorp 1 Line 2023-12-13 N/A 8.2 HIGH
An issue in craftbeer bar canvas mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVE-2023-43302 1 Linecorp 1 Line 2023-12-13 N/A 8.2 HIGH
An issue in sanTas mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVE-2023-43301 1 Linecorp 1 Line 2023-12-13 N/A 8.2 HIGH
An issue in DARTS SHOP MAXIM mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVE-2023-43305 1 Linecorp 1 Line 2023-12-11 N/A 8.2 HIGH
An issue in studio kent mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVE-2023-48134 1 Linecorp 1 Line 2023-11-22 N/A 7.5 HIGH
nagayama_copabowl Line 13.6.1 is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor.
CVE-2021-41011 1 Linecorp 1 Line 2022-07-12 4.3 MEDIUM 7.5 HIGH
LINE client for iOS before 11.15.0 might expose authentication information for a certain service to external entities under certain conditions. This is usually impossible, but in combination with a server-side bug, attackers could get this information.
CVE-2022-29505 1 Linecorp 1 Line 2022-05-06 4.4 MEDIUM 7.8 HIGH
Due to build misconfiguration in openssl dependency, LINE for Windows before 7.8 is vulnerable to DLL injection that could lead to privilege escalation.
CVE-2021-36216 1 Linecorp 1 Line 2021-09-15 4.6 MEDIUM 7.8 HIGH
LINE for Windows 6.2.1.2289 and before allows arbitrary code execution via malicious DLL injection.
CVE-2019-6010 1 Linecorp 1 Line 2019-09-19 6.8 MEDIUM 7.8 HIGH
Integer overflow vulnerability in LINE(Android) from 4.4.0 to the version before 9.15.1 allows remote attackers to cause a denial of service (DoS) condition or execute arbitrary code via a specially crafted image.
CVE-2018-13435 1 Linecorp 1 Line 2018-11-08 4.4 MEDIUM 7.0 HIGH
** DISPUTED ** An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method to disable passcode authentication. NOTE: the vendor indicates that this is not an attack of interest within the context of their threat model, which excludes iOS devices on which a jailbreak has occurred.
CVE-2018-13446 1 Linecorp 1 Line 2018-11-08 4.4 MEDIUM 7.0 HIGH
** DISPUTED ** An issue was discovered in the LINE jp.naver.line application 8.8.1 for Android. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method's return value to true. In other words, an attacker could authenticate with an arbitrary passcode. NOTE: the vendor indicates that this is not an attack of interest within the context of their threat model, which excludes Android devices on which rooting has occurred.
CVE-2018-0609 1 Linecorp 1 Line 2018-08-17 6.8 MEDIUM 7.8 HIGH
Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
CVE-2016-4850 1 Linecorp 1 Line 2017-04-26 6.8 MEDIUM 8.1 HIGH
LINE for Windows before 4.8.3 allows man-in-the-middle attackers to execute arbitrary code.
CVE-2016-4831 1 Linecorp 2 Line, Line Installer 2016-11-28 7.2 HIGH 7.8 HIGH
Untrusted search path vulnerability in LINE and LINE Installer 4.7.0 and earlier on Windows allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.