Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
Edge Chromium HIGH 8.8
CVE-2025-21342

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 133.0.3065.51+
Fix from $1,950 2025-02-06
Edge Chromium HIGH 8.8
CVE-2025-21408

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 133.0.3065.51+
Fix from $1,950 2025-02-06
Meeting Software Development Kit CRITICAL 9.8
CVE-2025-0147

Type confusion in the Zoom Workplace App for Linux before 6.2.10 may allow an authorized user to conduct an escalation of privilege via network acces…

Fix: 6.2.10+
Fix from $2,300 2025-01-30
Android HIGH 7.7
CVE-2024-40676

In checkKeyIntent of AccountManagerService.java, there is a possible way to bypass intent security check and install an unknown app due to a confused…

Mitigation only
Fix from $1,950 2025-01-28
Ipados HIGH 8.0
CVE-2025-24137

A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, macOS …

Fix: 2.3 / 11.3+
Fix from $1,950 2025-01-27
Ipados HIGH 7.5
CVE-2025-24129

A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, macOS Sonoma 14.7.5, …

Fix: 2.3 / 11.3+
Fix from $1,950 2025-01-27
Ipados MEDIUM 5.5
CVE-2024-54507

A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2. An attacker …

Fix: 15.2 / 18.2+
Fix from $1,600 2025-01-27
Unclassified HIGH 7.9
CVE-2025-22153

RestrictedPython is a tool that helps to define a subset of the Python language which allows to provide a program input into a trusted environment. V…

Patch available
Fix from $1,950 2025-01-23
365 Apps HIGH 7.8
CVE-2025-21356

Microsoft Office Visio Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2025-01-14
Windows Server 2022 23h2 HIGH 7.8
CVE-2025-21326

Internet Explorer Remote Code Execution Vulnerability

Fix: 10.0.25398.1369 / 10.0.26100.2894+
Fix from $1,950 2025-01-14
Windows Server 2016 MEDIUM 5.9
CVE-2025-21225

Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability

Fix: 10.0.14393.7699 / 10.0.17763.6775+
Fix from $1,600 2025-01-14
Endpoint Manager HIGH 7.8
CVE-2024-13169

An out-of-bounds read in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a local authenticat…

Fix: 2022+
Fix from $1,950 2025-01-14
Security Kit MEDIUM 5.3
CVE-2024-13275

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Drupal Security Kit allows HTTP DoS.This issue affects Security Kit: f…

Fix: 2.0.3+
Fix from $1,600 2025-01-09
Chrome HIGH 8.8
CVE-2025-0291EPSS 8%

Type Confusion in V8 in Google Chrome prior to 131.0.6778.264 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML…

Fix: 131.0.6778.264+
Fix from $1,950 2025-01-08
Cobalt HIGH 7.8
CVE-2024-13047

Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2024-12-30
Cobalt HIGH 7.8
CVE-2024-13049

Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2024-12-30
Drasimucad HIGH 7.8
CVE-2024-12836

Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execu…

Fix: after 1.02.00.00
Fix from $1,950 2024-12-30
Drasimucad HIGH 7.8
CVE-2024-12834

Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execu…

Fix: after 1.02.00.00
Fix from $1,950 2024-12-30
Tcpdf HIGH 7.5
CVE-2024-56522

An issue was discovered in TCPDF before 6.8.0. unserializeTCPDFtag uses != (aka loose comparison) and does not use a constant-time function to compar…

Fix: 6.8.0+
Fix from $1,950 2024-12-27
Chrome HIGH 8.8
CVE-2024-12692EPSS 7%

Type Confusion in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 131.0.6778.204+
Fix from $1,950 2024-12-18
Safari HIGH 8.8
CVE-2024-54505

A type confusion issue was addressed with improved memory handling. This issue is fixed in Safari 18.2, iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macO…

Fix: 2.2 / 11.2+
Fix from $1,950 2024-12-12
macOS MEDIUM 5.5
CVE-2024-54524

A logic issue was addressed with improved file handling. This issue is fixed in macOS Sequoia 15.2. A malicious app may be able to access arbitrary f…

Fix: 15.2+
Fix from $1,600 2024-12-12
Windows Server 2016 HIGH 8.1
CVE-2024-49119

Windows Remote Desktop Services Remote Code Execution Vulnerability

Fix: 10.0.14393.7606 / 10.0.17763.6659+
Fix from $1,950 2024-12-12
Chrome HIGH 8.8
CVE-2024-12381

Type Confusion in V8 in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 131.0.6778.139+
Fix from $1,950 2024-12-12
Chrome HIGH 8.8
CVE-2024-12053

Type Confusion in V8 in Google Chrome prior to 131.0.6778.108 allowed a remote attacker to potentially exploit object corruption via a crafted HTML p…

Fix: 131.0.6778.108+
Fix from $1,950 2024-12-03
Irfanview HIGH 7.8
CVE-2024-11507

IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o…

Mitigation only
Fix from $1,950 2024-11-22
Irfanview HIGH 7.8
CVE-2024-11508

IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o…

Mitigation only
Fix from $1,950 2024-11-22
Android HIGH 7.8
CVE-2018-9471

In the deserialization constructor of NanoAppFilter.java, there is a possible loss of data due to type confusion. This could lead to local escalation…

Patch available
Fix from $1,950 2024-11-20
Chrome HIGH 8.8
CVE-2024-11395

Type Confusion in V8 in Google Chrome prior to 131.0.6778.85 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 131.0.6778.85+
Fix from $1,950 2024-11-19
Android HIGH 7.8
CVE-2018-9339

In writeTypedArrayList and readTypedArrayList of Parcel.java, there is a possible escalation of privilege due to type confusion. This could lead to l…

Patch available
Fix from $1,950 2024-11-19