VYPR

Vendor CVEs

Linecorp

All CVEs

105 total · sorted by risk
  • CVE-2019-16771MedDec 6, 2019
    risk 0.24cvss 4.8epss 0.01

    Versions of Armeria 0.85.0 through and including 0.96.0 are vulnerable to HTTP response splitting, which allows remote attackers to inject arbitrary HTTP headers via CRLF sequences when unsanitized data is used to populate the headers of an HTTP response. This vulnerability has…

  • CVE-2025-14019LowDec 15, 2025
    risk 0.22cvss 3.4epss 0.00

    LINE client for Android versions from 13.8 to 15.5 is vulnerable to UI spoofing in the in-app browser where a specific layout could obscure the full-screen warning prompt, potentially allowing attackers to conduct phishing attacks.

  • CVE-2025-14023LowDec 15, 2025
    risk 0.20cvss 3.1epss 0.00

    LINE client for iOS prior to 15.19 allows UI spoofing due to inconsistencies between the navigation state and the in-app browser's user interface, which could create confusion about the trust context of displayed pages or interactive elements under specific conditions.

  • CVE-2014-6980Oct 16, 2014
    risk 0.00cvss —epss 0.00

    The LINE PLAY (aka jp.naver.lineplay.android) application 2.3.1.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

  • CVE-2013-7144Aug 16, 2014
    risk 0.00cvss —epss 0.01

    LINE 3.2.1.83 and earlier on Windows and 3.2.1 and earlier on OS X does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Page 3 of 3