Vulnerability index

Browse CVEs

831 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
Harmonyos HIGH 7.5
CVE-2021-39987

The HwNearbyMain module has a Data Processing Errors vulnerability.Successful exploitation of this vulnerability may cause a process to restart.

Fix: 2.0+
Fix from $1,950 2022-01-03
Chrome HIGH 8.8
CVE-2021-4078

Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.93+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-38012

Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.45+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-4056

Type confusion in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML p…

Fix: 96.0.4664.93+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-4061

Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.93+
Fix from $1,950 2021-12-23
Chrome HIGH 8.8
CVE-2021-38007

Type confusion in V8 in Google Chrome prior to 96.0.4664.45 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 96.0.4664.45+
Fix from $1,950 2021-12-23
Hermes CRITICAL 9.8
CVE-2021-24045

A type confusion vulnerability could be triggered when resolving the "typeof" unary operator in Facebook Hermes prior to v0.10.0. Note that this is o…

Fix: 0.10.0+
Fix from $2,300 2021-12-13
Chrome HIGH 8.8
CVE-2021-38001EPSS 27%

Type confusion in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

Fix: 95.0.4638.69+
Fix from $1,950 2021-11-23
Fedora MEDIUM 5.0
CVE-2021-41190

The OCI Distribution Spec project defines an API protocol to facilitate and standardize the distribution of content. In the OCI Distribution Specific…

Fix: after 1.0.1
Fix from $1,600 2021-11-17
Datafeed Opc Suite HIGH 7.5
CVE-2021-40871

An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial of service (DoS) by sending c…

Fix: 5.18 / 5.66+
Fix from $1,950 2021-11-10
Smartlink Hw Dp HIGH 7.5
CVE-2021-40872

An issue was discovered in Softing Industrial Automation uaToolkit Embedded before 1.40. Remote attackers to cause a denial of service (DoS) or login…

Fix: 1.40+
Fix from $1,950 2021-11-10
Capital Vstar MEDIUM 5.3
CVE-2021-31344

A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303),…

Fix: 4.1.1 / 2017.02.1+
Fix from $1,600 2021-11-09
Bootstrap Table MEDIUM 6.1
CVE-2021-23472

This affects versions before 1.19.1 of package bootstrap-table. A type confusion vulnerability can lead to a bypass of input sanitization when the in…

Fix: 1.19.1+
Fix from $1,600 2021-11-03
Json Ptr CRITICAL 9.8
CVE-2021-23509

This affects the package json-ptr before 3.0.0. A type confusion vulnerability can lead to a bypass of CVE-2020-7766 when the user-provided keys used…

Fix: 3.0.0+
Fix from $2,300 2021-11-03
Dotty CRITICAL 9.8
CVE-2021-23624

This affects the package dotty before 0.1.2. A type confusion vulnerability can lead to a bypass of CVE-2021-25912 when the user-provided keys used i…

Fix: 0.1.2+
Fix from $2,300 2021-11-03
Jsonpointer CRITICAL 9.8
CVE-2021-23807

This affects the package jsonpointer before 5.0.0. A type confusion vulnerability can lead to a bypass of a previous Prototype Pollution fix when the…

Fix: 5.0.0+
Fix from $2,300 2021-11-03
Json Pointer CRITICAL 9.8
CVE-2021-23820

This affects all versions of package json-pointer. A type confusion vulnerability can lead to a bypass of CVE-2020-7709 when the pointer components a…

Fix: 0.6.2+
Fix from $2,300 2021-11-03
Chrome HIGH 8.8
CVE-2018-6122

Type confusion in WebAssembly in Google Chrome prior to 66.0.3359.139 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 66.0.3359.139+
Fix from $1,950 2021-11-02
Safari HIGH 8.8
CVE-2021-30818

A type confusion issue was addressed with improved state handling. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, iOS 15 and iPadOS 15, Sa…

Fix: 8.0 / 12.0.1+
Fix from $1,950 2021-10-28
Chrome HIGH 8.8
CVE-2021-30627

Type confusion in Blink layout in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to potentially exploit heap corruption via a crafted …

Fix: 93.0.4577.82+
Fix from $1,950 2021-10-08
Teddy MEDIUM 6.1
CVE-2021-23447

This affects the package teddy before 0.5.9. A type confusion vulnerability can be used to bypass input sanitization when the model content is an arr…

Fix: 0.5.9+
Fix from $1,600 2021-10-07
Acrobat HIGH 7.8
CVE-2021-39841EPSS 12%

Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by a Type Confusi…

Fix: after 21.005.20060
Fix from $1,950 2021-09-29
Edge MEDIUM 6.1
CVE-2021-23443

This affects the package edge.js before 5.3.2. A type confusion vulnerability can be used to bypass input sanitization when the input to be rendered …

Fix: 5.3.2+
Fix from $1,600 2021-09-21
Jointjs CRITICAL 9.8
CVE-2021-23444

This affects the package jointjs before 3.4.2. A type confusion vulnerability can lead to a bypass of CVE-2020-28480 when the user-provided keys used…

Fix: 3.4.2+
Fix from $2,300 2021-09-21
Fedora MEDIUM 6.3
CVE-2021-39219

Wasmtime is an open source runtime for WebAssembly & WASI. Wasmtime before version 0.30.0 is affected by a type confusion vulnerability. As a Rust li…

Fix: 0.30.0+
Fix from $1,600 2021-09-17
Office HIGH 7.8
CVE-2021-38658EPSS 6%

Microsoft Office Graphics Remote Code Execution Vulnerability

Patch available
Fix from $1,950 2021-09-15
Set Value CRITICAL 9.8
CVE-2021-23440

This affects the package set-value before <2.0.1, >=3.0.0 <4.0.1. A type confusion vulnerability can lead to a bypass of CVE-2019-10747 when the user…

Fix: 2.0.1 / 4.0.1+
Fix from $2,300 2021-09-12
macOS CRITICAL 9.8
CVE-2021-1829

A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.3. An application may be able to execute a…

Fix: 11.3+
Fix from $2,300 2021-09-08
Safari HIGH 8.8
CVE-2021-30758

A type confusion issue was addressed with improved state handling. This issue is fixed in iOS 14.7, Safari 14.1.2, macOS Big Sur 11.5, watchOS 7.6, t…

Fix: 7.6 / 11.5+
Fix from $1,950 2021-09-08
Mpath CRITICAL 9.8
CVE-2021-23438

This affects the package mpath before 0.8.4. A type confusion vulnerability can lead to a bypass of CVE-2018-16490. In particular, the condition igno…

Fix: 0.8.4+
Fix from $2,300 2021-09-01