First published: Thu Dec 07 2023(Updated: )
An issue in craftbeer bar canvas mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
LINE | =13.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43303 has been classified with a significant severity due to its potential to allow unauthorized access through notification spoofing.
To mitigate CVE-2023-43303, ensure that you update the LINE application to version 13.6.2 or later, where the vulnerability is addressed.
CVE-2023-43303 allows attackers to send malicious notifications by exploiting the leakage of the channel access token.
CVE-2023-43303 specifically affects the Line application version 13.6.1.
Users of Line version 13.6.1 should upgrade to the latest version immediately to protect against the vulnerabilities described in CVE-2023-43303.