CVE-2023-48126: Medium severity line vulnerability
An issue in Luxe Beauty Clinic mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-48126?
CVE-2023-48126 has been classified with a moderate severity level due to its potential for exploitation through notification abuse.
How do I fix CVE-2023-48126?
To fix CVE-2023-48126, update the Luxe Beauty Clinic mini-app on Line to the latest version beyond 13.6.1.
What is the impact of CVE-2023-48126?
The impact of CVE-2023-48126 includes the potential for attackers to send malicious notifications to users by exploiting token leakage.
Who is affected by CVE-2023-48126?
Users of the Luxe Beauty Clinic mini-app on Line version 13.6.1 are directly affected by CVE-2023-48126.
How is token leakage exploited in CVE-2023-48126?
Token leakage in CVE-2023-48126 can be exploited by attackers to gain unauthorized access to send notifications to users.