An issue in kimono-oldnew mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
References
| Link | Resource |
|---|---|
| https://github.com/syz913/CVE-reports/blob/main/kimono-oldnew.md | Exploit Third Party Advisory |
Configurations
History
29 Jan 2024, 22:59
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-noinfo | |
| CPE | cpe:2.3:a:linecorp:line:13.6.1:*:*:*:*:*:*:* | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.4 |
| First Time |
Linecorp
Linecorp line |
|
| References | () https://github.com/syz913/CVE-reports/blob/main/kimono-oldnew.md - Exploit, Third Party Advisory |
26 Jan 2024, 13:51
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
26 Jan 2024, 08:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-01-26 08:15
Updated : 2024-01-29 22:59
NVD link : CVE-2023-48129
Mitre link : CVE-2023-48129
CVE.ORG link : CVE-2023-48129
JSON object : View
Products Affected
linecorp
- line
CWE
