Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
.net CRITICAL 9.8
CVE-2024-43498

.NET and Visual Studio Remote Code Execution Vulnerability

Fix: 17.6.21 / 17.8.16+
Fix from $2,300 2024-11-12
Android MEDIUM 6.7
CVE-2024-20106

In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution…

Mitigation only
Fix from $1,600 2024-11-04
Chrome HIGH 8.8
CVE-2024-10231

Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 130.0.6723.69+
Fix from $1,950 2024-10-22
Chrome HIGH 8.8
CVE-2024-10230

Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 130.0.6723.69+
Fix from $1,950 2024-10-22
Linux Kernel HIGH 7.1
CVE-2024-49860

In the Linux kernel, the following vulnerability has been resolved: ACPI: sysfs: validate return type of _STR method Only buffer objects are valid …

Fix: 5.10.227 / 5.15.168+
Fix from $1,950 2024-10-21
Edge Chromium HIGH 8.8
CVE-2024-43596

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 130.0.2849.46+
Fix from $1,950 2024-10-17
Chrome HIGH 8.8
CVE-2024-9859

Type confusion in WebAssembly in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (…

Fix: 126.0.6478.126+
Fix from $1,950 2024-10-11
Chrome HIGH 8.8
CVE-2024-9603

Type Confusion in V8 in Google Chrome prior to 129.0.6668.100 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 129.0.6668.100+
Fix from $1,950 2024-10-08
Chrome HIGH 8.8
CVE-2024-9602

Type Confusion in V8 in Google Chrome prior to 129.0.6668.100 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML p…

Fix: 129.0.6668.100+
Fix from $1,950 2024-10-08
Secureanywhere Web Shield CRITICAL 9.8
CVE-2024-7825

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (w…

Fix: 2.1.2.3+
Fix from $2,300 2024-10-03
Secureanywhere Web Shield CRITICAL 9.8
CVE-2024-7824

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (w…

Fix: 2.1.2.3+
Fix from $2,300 2024-10-03
Chrome HIGH 8.8
CVE-2024-9122EPSS 6%

Type Confusion in V8 in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page…

Fix: 129.0.6668.70+
Fix from $1,950 2024-09-25
Edge Chromium HIGH 8.8
CVE-2024-43489

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 129.0.2792.52+
Fix from $1,950 2024-09-19
Chrome HIGH 8.8
CVE-2024-8904

Type Confusion in V8 in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 129.0.6668.58+
Fix from $1,950 2024-09-17
Acrobat HIGH 7.8
CVE-2024-45112

Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are affected by a Type Confusion vulnerability that could …

Fix: 20.005.30680 / 24.001.30187+
Fix from $1,950 2024-09-13
Chrome HIGH 8.8
CVE-2024-8638

Type Confusion in V8 in Google Chrome prior to 128.0.6613.137 allowed a remote attacker to potentially exploit object corruption via a crafted HTML p…

Fix: 128.0.6613.137+
Fix from $1,950 2024-09-11
Firefox HIGH 7.5
CVE-2024-7652

An error in the ECMA-262 specification relating to Async Generators could have resulted in a type confusion, potentially leading to memory corruption…

Fix: 115.13.0 / 128.0+
Fix from $1,950 2024-09-06
OpenSSL HIGH 7.5
CVE-2024-6119EPSS 67%

Issue summary: Applications performing certificate name checks (e.g., TLS clients checking server certificates) may attempt to read an invalid memory…

Fix: 3.0.15 / 3.1.7+
Fix from $1,950 2024-09-03
Firefox CRITICAL 9.8
CVE-2024-8381

A potentially exploitable type confusion could be triggered when looking up a property name on an object being used as the `with` environment. This v…

Fix: 115.15 / 128.2+
Fix from $2,300 2024-09-03
Firefox CRITICAL 9.8
CVE-2024-8385

A difference in the handling of StructFields and ArrayTypes in WASM could be used to trigger an exploitable type confusion vulnerability. This vulner…

Fix: 128.2 / 130.0+
Fix from $2,300 2024-09-03
Chrome HIGH 8.8
CVE-2024-8194

Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 128.0.6613.113+
Fix from $1,950 2024-08-28
Edge Chromium MEDIUM 6.3
CVE-2024-38207

Microsoft Edge (HTML-based) Memory Corruption Vulnerability

Fix: 128.0.2739.42+
Fix from $1,600 2024-08-23
Edge Chromium HIGH 7.8
CVE-2024-38209

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 128.0.2739.42+
Fix from $1,950 2024-08-22
Chrome HIGH 8.8
CVE-2024-7969

Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 128.0.6613.84+
Fix from $1,950 2024-08-21
Chrome CRITICAL 9.6
CVE-2024-7971 KEVEPSS 21%

Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium …

Fix: 128.0.2739.42 / 128.0.6613.84+
Fix from $2,300 2024-08-21
Android MEDIUM 5.5
CVE-2024-34742

In shouldWrite of OwnersData.java, there is a possible edge case that prevents MDM policies from being persisted due to a logic error in the code. Th…

Patch available
Fix from $1,600 2024-08-15
Unclassified HIGH 8.6
CVE-2024-43357

ECMA-262 is the language specification for the scripting language ECMAScript. A problem in the ECMAScript (JavaScript) specification of async generat…

Patch available
Fix from $1,950 2024-08-15
Windows 10 1507 HIGH 7.5
CVE-2024-38178 KEVEPSS 41%

Scripting Engine Memory Corruption Vulnerability

Fix: 10.0.10240.20751 / 10.0.14393.7259+
Fix from $1,950 2024-08-13
Edge Chromium CRITICAL 9.0
CVE-2024-38219

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

Fix: 127.0.2651.98+
Fix from $2,300 2024-08-12
Edge Chromium HIGH 7.8
CVE-2024-38218

Microsoft Edge (HTML-based) Memory Corruption Vulnerability

Fix: 127.0.2651.98+
Fix from $1,950 2024-08-12