Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
365 Apps HIGH 7.8
CVE-2026-26110

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

Fix: 16.0.19822.20000+
Fix from $1,950 2026-03-10
Firefox CRITICAL 9.8
CVE-2026-2796

JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

Fix: 148.0+
Fix from $2,300 2026-02-24
Firefox HIGH 7.5
CVE-2026-2783

Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 148, Firefox ESR 14…

Fix: 140.8.0 / 148.0+
Fix from $1,950 2026-02-24
Unclassified MEDIUM 6.5
CVE-2025-14799

The Brevo - Email, SMS, Web Push, Chat, and more. plugin for WordPress is vulnerable to authorization bypass due to type juggling in all versions up …

Mitigation only
Fix from $1,600 2026-02-18
Unclassified HIGH 8.4
CVE-2023-31323

Type confusion in the AMD Secure Processor (ASP) could allow an attacker to pass a malformed argument to the External Global Memory Interconnect Trus…

Mitigation only
Fix from $1,950 2026-02-12
Windows 10 1607 HIGH 7.8
CVE-2026-21519 KEV

Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

Fix: 10.0.14393.8868 / 10.0.17763.8389+
Fix from $1,950 2026-02-10
After Effects HIGH 7.8
CVE-2026-21330

After Effects versions 25.6 and earlier are affected by an Access of Resource Using Incompatible Type ('Type Confusion') vulnerability that could res…

Fix: 25.6.4+
Fix from $1,950 2026-02-10
Harmonyos MEDIUM 5.5
CVE-2026-24914

Type confusion vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability.

No fix yet
Fix from $1,600 2026-02-06
Jsonwebtoken HIGH 7.5
CVE-2026-25537

jsonwebtoken is a JWT lib in rust. Prior to version 10.3.0, there is a Type Confusion vulnerability in jsonwebtoken, specifically, in its claim valid…

Fix: 10.3.0+
Fix from $1,950 2026-02-04
Unclassified HIGH 8.5
CVE-2025-29867

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Hancom Inc. Hancom Office 2018, Hancom Inc. Hancom Office 2020, Hancom…

Mitigation only
Fix from $1,950 2026-02-04
Chrome HIGH 8.8
CVE-2026-1862

Type Confusion in V8 in Google Chrome prior to 144.0.7559.132 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 144.0.7559.132+
Fix from $1,950 2026-02-03
Unclassified MEDIUM 6.9
CVE-2025-65080

A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. This vulnerability can be leveraged by a…

Mitigation only
Fix from $1,600 2026-02-03
Iccdev HIGH 7.1
CVE-2026-25503

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to…

Fix: 2.3.1.2+
Fix from $1,950 2026-02-03
Unclassified MEDIUM 6.5
CVE-2025-12899

A flaw in Zephyr’s network stack allows an IPv4 packet containing ICMP type 128 to be misclassified as an ICMPv6 Echo Request. This results in an out…

Mitigation only
Fix from $1,600 2026-01-30
Unclassified CRITICAL 9.1
CVE-2026-24874

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in themrdemonized xray-monolith.This issue affects xray-monolith: before …

Patch available
Fix from $2,300 2026-01-27
Windows 10 1607 HIGH 7.8
CVE-2026-20860EPSS 8%

Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva…

Fix: 10.0.14393.8783 / 10.0.17763.8276+
Fix from $1,950 2026-01-13
Windows 11 23h2 HIGH 7.8
CVE-2026-20811

Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

Fix: 10.0.20348.4648 / 10.0.22631.6491+
Fix from $1,950 2026-01-13
Preact MEDIUM 6.1
CVE-2026-22028

Preact, a lightweight web development framework, JSON serialization protection to prevent Virtual DOM elements from being constructed from arbitrary …

Fix: 10.26.10 / 10.27.3+
Fix from $1,600 2026-01-08
Iccdev MEDIUM 6.5
CVE-2026-21689

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.2+
Fix from $1,600 2026-01-07
Iccdev MEDIUM 6.3
CVE-2026-21690

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.2+
Fix from $1,600 2026-01-07
Iccdev MEDIUM 6.5
CVE-2026-21691

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.2+
Fix from $1,600 2026-01-07
Iccdev HIGH 8.8
CVE-2026-21692

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-07
Iccdev HIGH 8.8
CVE-2026-21693

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-07
Iccdev HIGH 8.8
CVE-2026-22046

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-07
Iccdev HIGH 8.8
CVE-2026-21683

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…

Fix: 2.3.1.1+
Fix from $1,950 2026-01-07
Tarkov Data Manager CRITICAL 9.8
CVE-2026-21854

The Tarkov Data Manager is a tool to manage the Tarkov item data. Prior to 02 January 2025, an authentication bypass vulnerability in the login endpo…

Fix: 2025-01-02+
Fix from $2,300 2026-01-07
Iccdev HIGH 7.8
CVE-2026-21505

iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to…

Fix: 2.3.1.2+
Fix from $1,950 2026-01-07
Iccdev MEDIUM 6.6
CVE-2026-21493

iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below are vulnerable to Type Confus…

Fix: 2.3.1.2+
Fix from $1,600 2026-01-06
Jsish CRITICAL 9.8
CVE-2025-65570

A type confusion in jsish 2.0 allows incorrect control flow during execution of the OP_NEXT opcode. When an “instanceof” expression uses an array ele…

Mitigation only
Fix from $2,300 2025-12-29
macOS HIGH 7.5
CVE-2025-43506

A logic error was addressed with improved error handling. This issue is fixed in macOS Tahoe 26.1. iCloud Private Relay may not activate when more th…

Fix: 26.1+
Fix from $1,950 2025-12-12