Vulnerability index

Browse CVEs

87 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Matsuya HIGH 8.2
CVE-2023-39737

The leakage of the client secret in Matsuya Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages.

No fix yet
Fix from $1,950 2023-10-25
Regina Sweets\&bakery HIGH 8.2
CVE-2023-39739

The leakage of the client secret in REGINA SWEETS&BAKERY Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast m…

No fix yet
Fix from $1,950 2023-10-25
Onigiriya Musubee HIGH 8.2
CVE-2023-39740

The leakage of the client secret in Onigiriya-musubee Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast mess…

No fix yet
Fix from $1,950 2023-10-25
Line CRITICAL 9.8
CVE-2023-5554

Lack of TLS certificate verification in log transmission of a financial module within LINE client for iOS prior to 13.16.0.

Fix: 13.16.0+
Fix from $2,300 2023-10-12
Line MEDIUM 5.4
CVE-2023-43297

An issue in animal-art-lab v13.6.1 allows attackers to send crafted notifications via leakage of the channel access token.

No fix yet
Fix from $1,600 2023-10-02
Armeria HIGH 7.5
CVE-2023-38493

Armeria is a microservice framework Spring supports Matrix variables. When Spring integration is used, Armeria calls Spring controllers via `TomcatSe…

Fix: 1.24.3+
Fix from $1,950 2023-07-25
Line HIGH 7.5
CVE-2022-41568

LINE client for iOS before 12.17.0 might be crashed by sharing an invalid shared key of e2ee in group chat.

Fix: 12.17.0+
Fix from $1,950 2022-11-29
Line HIGH 7.8
CVE-2022-29505

Due to build misconfiguration in openssl dependency, LINE for Windows before 7.8 is vulnerable to DLL injection that could lead to privilege escalati…

Fix: 7.8+
Fix from $1,950 2022-04-27
Line MEDIUM 5.5
CVE-2022-22820

Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption for message recipient by sen…

Fix: 7.4.0+
Fix from $1,600 2022-01-20
Armeria HIGH 7.5
CVE-2021-43795

Armeria is an open source microservice framework. In affected versions an attacker can access an Armeria server's local file system beyond its restri…

Fix: 1.13.4+
Fix from $1,950 2021-12-02
Line HIGH 7.5
CVE-2021-41011

LINE client for iOS before 11.15.0 might expose authentication information for a certain service to external entities under certain conditions. This …

Fix: 11.15.0+
Fix from $1,950 2021-09-22
Central Dogma HIGH 8.8
CVE-2021-38388

Central Dogma allows privilege escalation with mirroring to the internal dogma repository that has a file managing the authorization of the project.

Fix: 0.51.1+
Fix from $1,950 2021-09-08
Line HIGH 7.8
CVE-2021-36216

LINE for Windows 6.2.1.2289 and before allows arbitrary code execution via malicious DLL injection.

Fix: after 6.2.1.2289
Fix from $1,950 2021-09-08
Line MEDIUM 5.3
CVE-2021-36215

LINE client for iOS 10.21.3 and before allows address bar spoofing due to inappropriate address handling.

Fix: after 10.21.3
Fix from $1,600 2021-09-08
Line MEDIUM 6.1
CVE-2021-36214

LINE client for iOS before 10.16.3 allows cross site script with specific header in WebView.

Fix: 10.16.3+
Fix from $1,600 2021-07-13
Armeria MEDIUM 6.5
CVE-2019-16771

Versions of Armeria 0.85.0 through and including 0.96.0 are vulnerable to HTTP response splitting, which allows remote attackers to inject arbitrary …

Fix: 0.97.0+
Fix from $1,600 2019-12-06
Line HIGH 7.8
CVE-2019-6010

Integer overflow vulnerability in LINE(Android) from 4.4.0 to the version before 9.15.1 allows remote attackers to cause a denial of service (DoS) co…

Fix: 9.15.1+
Fix from $1,950 2019-09-19
Apng Drawable HIGH 8.8
CVE-2019-6007

Integer overflow vulnerability in apng-drawable 1.0.0 to 1.6.0 allows an attacker to cause a denial of service (DoS) condition or execute arbitrary c…

Fix: after 1.6.0
Fix from $1,950 2019-09-12
Line Music HIGH 7.4
CVE-2018-0650

The LINE MUSIC for Android version 3.1.0 to versions prior to 3.6.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-midd…

Fix: 3.6.5+
Fix from $1,950 2018-09-07
Line HIGH 7.0
CVE-2018-13435

An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The Passcode feature allows authentication bypass via runtime manipulati…

No fix yet
Fix from $1,950 2018-08-16
Line HIGH 7.0
CVE-2018-13446

An issue was discovered in the LINE jp.naver.line application 8.8.1 for Android. The Passcode feature allows authentication bypass via runtime manipu…

No fix yet
Fix from $1,950 2018-08-16
Line MEDIUM 6.3
CVE-2018-13434

An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The LAContext class for Biometric (TouchID) validation allows authentica…

No fix yet
Fix from $1,600 2018-08-16
Line HIGH 7.8
CVE-2018-0609

Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL in an unsp…

Fix: 5.8.0+
Fix from $1,950 2018-06-26
Line MEDIUM 5.9
CVE-2018-0518

LINE for iOS version 7.1.3 to 7.1.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers an…

Fix: after 7.15
Fix from $1,600 2018-02-23
Line HIGH 8.1
CVE-2016-4850

LINE for Windows before 4.8.3 allows man-in-the-middle attackers to execute arbitrary code.

Fix: after 4.8.2.1125
Fix from $1,950 2017-04-20
Line HIGH 7.8
CVE-2016-4831

Untrusted search path vulnerability in LINE and LINE Installer 4.7.0 and earlier on Windows allows local users to gain privileges via a Trojan horse …

Fix: after 4.7.0
Fix from $1,950 2016-07-12
Line MEDIUM 5.7
CVE-2016-1156

LINE 4.3.0.724 and earlier on Windows and 4.3.1 and earlier on OS X allows remote authenticated users to cause a denial of service (application crash…

Fix: after 4.3.1
Fix from $1,600 2016-02-19