THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-16881 — A code injection vulnerability exists in the LINE Android app prior to version 26.7.2. The profile rendering component does not adequately validate or sandbox externally supplied script content embedded in profile templates. As a result, an attacker who is able to place craft

[NVD] CVE-2026-16881 — A code injection vulnerability exists in the LINE Android app prior to version 26.7.2. The profile rendering component does not adequately validate or sandbox externally supplied script content embedded in profile templates. As a result, an attacker who is able to place craft

mednvdPublished 2026-08-04

CVE-2026-16881 CVSS: None Published: 2026-08-04T06:16:29.810

A code injection vulnerability exists in the LINE Android app prior to version 26.7.2.

The profile rendering component does not adequately validate or sandbox externally supplied script content embedded in profile templates.

As a result, an attacker who is able to place crafted content in a profile could cause unintended code to ex

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-16881