Vulnerability index

Browse CVEs

87 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.2 CVE-2023-39737 The leakage of the client secret in Matsuya Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages. Matsuya No fix yet Fix from $1,9502023-10-25 HIGH 8.2 CVE-2023-39739 The leakage of the client secret in REGINA SWEETS&BAKERY Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast m… Regina Sweets\&bakery No fix yet Fix from $1,9502023-10-25 HIGH 8.2 CVE-2023-39740 The leakage of the client secret in Onigiriya-musubee Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast mess… Onigiriya Musubee No fix yet Fix from $1,9502023-10-25 CRITICAL 9.8 CVE-2023-5554 Lack of TLS certificate verification in log transmission of a financial module within LINE client for iOS prior to 13.16.0. Line 13.16.0+ Fix from $2,3002023-10-12 MEDIUM 5.4 CVE-2023-43297 An issue in animal-art-lab v13.6.1 allows attackers to send crafted notifications via leakage of the channel access token. Line No fix yet Fix from $1,6002023-10-02 HIGH 7.5 CVE-2023-38493 Armeria is a microservice framework Spring supports Matrix variables. When Spring integration is used, Armeria calls Spring controllers via `TomcatSe… Armeria 1.24.3+ Fix from $1,9502023-07-25 HIGH 7.5 CVE-2022-41568 LINE client for iOS before 12.17.0 might be crashed by sharing an invalid shared key of e2ee in group chat. Line 12.17.0+ Fix from $1,9502022-11-29 HIGH 7.8 CVE-2022-29505 Due to build misconfiguration in openssl dependency, LINE for Windows before 7.8 is vulnerable to DLL injection that could lead to privilege escalati… Line 7.8+ Fix from $1,9502022-04-27 MEDIUM 5.5 CVE-2022-22820 Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption for message recipient by sen… Line 7.4.0+ Fix from $1,6002022-01-20 HIGH 7.5 CVE-2021-43795 Armeria is an open source microservice framework. In affected versions an attacker can access an Armeria server's local file system beyond its restri… Armeria 1.13.4+ Fix from $1,9502021-12-02 HIGH 7.5 CVE-2021-41011 LINE client for iOS before 11.15.0 might expose authentication information for a certain service to external entities under certain conditions. This … Line 11.15.0+ Fix from $1,9502021-09-22 HIGH 8.8 CVE-2021-38388 Central Dogma allows privilege escalation with mirroring to the internal dogma repository that has a file managing the authorization of the project. Central Dogma 0.51.1+ Fix from $1,9502021-09-08 HIGH 7.8 CVE-2021-36216 LINE for Windows 6.2.1.2289 and before allows arbitrary code execution via malicious DLL injection. Line after 6.2.1.2289 Fix from $1,9502021-09-08 MEDIUM 5.3 CVE-2021-36215 LINE client for iOS 10.21.3 and before allows address bar spoofing due to inappropriate address handling. Line after 10.21.3 Fix from $1,6002021-09-08 MEDIUM 6.1 CVE-2021-36214 LINE client for iOS before 10.16.3 allows cross site script with specific header in WebView. Line 10.16.3+ Fix from $1,6002021-07-13 MEDIUM 6.5 CVE-2019-16771 Versions of Armeria 0.85.0 through and including 0.96.0 are vulnerable to HTTP response splitting, which allows remote attackers to inject arbitrary … Armeria 0.97.0+ Fix from $1,6002019-12-06 HIGH 7.8 CVE-2019-6010 Integer overflow vulnerability in LINE(Android) from 4.4.0 to the version before 9.15.1 allows remote attackers to cause a denial of service (DoS) co… Line 9.15.1+ Fix from $1,9502019-09-19 HIGH 8.8 CVE-2019-6007 Integer overflow vulnerability in apng-drawable 1.0.0 to 1.6.0 allows an attacker to cause a denial of service (DoS) condition or execute arbitrary c… Apng Drawable after 1.6.0 Fix from $1,9502019-09-12 HIGH 7.4 CVE-2018-0650 The LINE MUSIC for Android version 3.1.0 to versions prior to 3.6.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-midd… Line Music 3.6.5+ Fix from $1,9502018-09-07 HIGH 7.0 CVE-2018-13435 An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The Passcode feature allows authentication bypass via runtime manipulati… Line No fix yet Fix from $1,9502018-08-16 HIGH 7.0 CVE-2018-13446 An issue was discovered in the LINE jp.naver.line application 8.8.1 for Android. The Passcode feature allows authentication bypass via runtime manipu… Line No fix yet Fix from $1,9502018-08-16 MEDIUM 6.3 CVE-2018-13434 An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The LAContext class for Biometric (TouchID) validation allows authentica… Line No fix yet Fix from $1,6002018-08-16 HIGH 7.8 CVE-2018-0609 Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL in an unsp… Line 5.8.0+ Fix from $1,9502018-06-26 MEDIUM 5.9 CVE-2018-0518 LINE for iOS version 7.1.3 to 7.1.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers an… Line after 7.15 Fix from $1,6002018-02-23 HIGH 8.1 CVE-2016-4850 LINE for Windows before 4.8.3 allows man-in-the-middle attackers to execute arbitrary code. Line after 4.8.2.1125 Fix from $1,9502017-04-20 HIGH 7.8 CVE-2016-4831 Untrusted search path vulnerability in LINE and LINE Installer 4.7.0 and earlier on Windows allows local users to gain privileges via a Trojan horse … Line after 4.7.0 Fix from $1,9502016-07-12 MEDIUM 5.7 CVE-2016-1156 LINE 4.3.0.724 and earlier on Windows and 4.3.1 and earlier on OS X allows remote authenticated users to cause a denial of service (application crash… Line after 4.3.1 Fix from $1,6002016-02-19