Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
Daqfactory HIGH 7.8
CVE-2025-66586

In AzeoTech DAQFactory release 20.7 (Build 2555), an access of resource using incompatible type vulnerability can be exploited to cause memory corrup…

Fix: 21.1+
Fix from $1,950 2025-12-11
365 Apps HIGH 7.8
CVE-2025-62554

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-12-09
Firefox HIGH 7.3
CVE-2025-14325

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thun…

Fix: 140.6.0 / 146.0+
Fix from $1,950 2025-12-09
Firefox CRITICAL 9.8
CVE-2025-14330

JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thun…

Fix: 140.6.0 / 146.0+
Fix from $2,300 2025-12-09
Chrome HIGH 8.8
CVE-2025-13630

Type Confusion in V8 in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 143.0.7499.40+
Fix from $1,950 2025-12-02
Control For Beaglebone Sl HIGH 7.5
CVE-2025-41738

An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime system to access a resource with a pointer of wr…

Fix: 4.19.0.0+
Fix from $1,950 2025-12-01
Harmonyos MEDIUM 5.5
CVE-2025-64314

Permission control vulnerability in the memory management module. Impact: Successful exploitation of this vulnerability may affect confidentiality.

No fix yet
Fix from $1,600 2025-11-28
Harmonyos MEDIUM 5.5
CVE-2025-58310

Permission control vulnerability in the distributed component. Impact: Successful exploitation of this vulnerability may affect service confidentiali…

No fix yet
Fix from $1,600 2025-11-28
Chrome HIGH 8.8
CVE-2025-13229

Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 142.0.7444.59 / 142.0.7444.60+
Fix from $1,950 2025-11-18
Chrome HIGH 8.8
CVE-2025-13230

Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 142.0.7444.59 / 142.0.7444.60+
Fix from $1,950 2025-11-18
Chrome HIGH 8.8
CVE-2025-13226

Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 142.0.7444.59 / 142.0.7444.60+
Fix from $1,950 2025-11-18
Chrome HIGH 8.8
CVE-2025-13227

Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 142.0.7444.59 / 142.0.7444.60+
Fix from $1,950 2025-11-18
Chrome HIGH 8.8
CVE-2025-13228

Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page…

Fix: 142.0.7444.59 / 142.0.7444.60+
Fix from $1,950 2025-11-18
Chrome HIGH 8.8
CVE-2025-13224

Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 142.0.7444.175+
Fix from $1,950 2025-11-17
Chrome HIGH 8.8
CVE-2025-13223 KEVEPSS 5%

Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 142.0.7444.175+
Fix from $1,950 2025-11-17
Chrome HIGH 8.8
CVE-2025-12428EPSS 7%

Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chro…

Fix: 142.0.7444.59+
Fix from $1,950 2025-11-10
Suitecrm MEDIUM 5.3
CVE-2022-50590

SuiteCRM versions prior to 7.12.6 contain a type confusion vulnerability within the processing of the ‘module’ parameter within the ‘deleteAttachment…

Fix: 7.12.6+
Fix from $1,600 2025-11-06
Lasso CRITICAL 9.8
CVE-2025-47151

A type confusion vulnerability exists in the lasso_node_impl_init_from_xml functionality of Entr'ouvert Lasso 2.5.1 and 2.8.2. A specially crafte…

Mitigation only
Fix from $2,300 2025-11-05
Unclassified HIGH 8.1
CVE-2025-62518

astral-tokio-tar is a tar archive reading/writing library for async Rust. Versions of astral-tokio-tar prior to 0.5.6 contain a boundary parsing vuln…

Patch available
Fix from $1,950 2025-10-21
365 Apps HIGH 7.8
CVE-2025-59231

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Fix: 16.0.10417.20059+
Fix from $1,950 2025-10-14
365 Apps HIGH 7.8
CVE-2025-59233

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Fix: 16.0.10417.20059+
Fix from $1,950 2025-10-14
Python Ldap MEDIUM 6.5
CVE-2025-61911

python-ldap is a lightweight directory access protocol (LDAP) client API for Python. In versions prior to 3.4.5, the sanitization method `ldap.filter…

Fix: 3.4.5+
Fix from $1,600 2025-10-10
Chrome CRITICAL 9.8
CVE-2025-10585 KEVEPSS 5%

Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 140.0.7339.185+
Fix from $2,300 2025-09-24
Revit HIGH 7.8
CVE-2025-8354

A maliciously crafted RFA file, when parsed through Autodesk Revit, can force a Type Confusion vulnerability. A malicious actor may leverage this vul…

Fix: 2026.3+
Fix from $1,950 2025-09-23
Do Markdownit CRITICAL 9.8
CVE-2025-59717

In the @digitalocean/do-markdownit package through 1.16.1 (in npm), the callout and fence_environment plugins perform .includes substring matching if…

Fix: after 1.16.1
Fix from $2,300 2025-09-19
Cobalt HIGH 7.8
CVE-2025-8000

Ashlar-Vellum Cobalt LI File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2025-09-17
Cobalt HIGH 7.8
CVE-2025-8002

Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2025-09-17
Cobalt HIGH 7.8
CVE-2025-8005

Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2025-09-17
Cobalt HIGH 7.8
CVE-2025-7995

Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2025-09-17
Cobalt HIGH 7.8
CVE-2025-7999

Ashlar-Vellum Cobalt AR File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2025-09-17