Descriptions

LINE client for iOS before 10.16.3 allows cross site script with specific header in WebView.

Severity

  • CVSS Score: -

Affected Versions

  • LINE client for iOS before 10.16.3

Fix

  • LINE should be updated to latest version.

Reference

  • https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-36214
  • https://hackerone.com/reports/988332

Updated: