Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
Ipados MEDIUM 5.5
CVE-2025-43355

A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Sequ…

Fix: 14.8 / 15.7+
Fix from $1,600 2025-09-15
macOS MEDIUM 6.2
CVE-2025-43297

A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26. An app may be able to cause a denial-of-se…

Fix: 26.0+
Fix from $1,600 2025-09-15
Windows 10 1809 HIGH 7.8
CVE-2025-55236

Time-of-check time-of-use (toctou) race condition in Graphics Kernel allows an authorized attacker to execute code locally.

Fix: 10.0.17763.7792 / 10.0.19044.6332+
Fix from $1,950 2025-09-09
Windows 10 1507 MEDIUM 6.7
CVE-2025-54915

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…

Fix: 10.0.10240.21128 / 10.0.14393.8422+
Fix from $1,600 2025-09-09
Windows 10 1507 MEDIUM 6.7
CVE-2025-54109

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…

Fix: 10.0.10240.21128 / 10.0.14393.8422+
Fix from $1,600 2025-09-09
Windows 10 1507 MEDIUM 6.7
CVE-2025-54104

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…

Fix: 10.0.10240.21128 / 10.0.14393.8422+
Fix from $1,600 2025-09-09
Windows 10 1507 MEDIUM 6.7
CVE-2025-54094

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…

Fix: 10.0.10240.21128 / 10.0.14393.8422+
Fix from $1,600 2025-09-09
Windows 10 1507 MEDIUM 6.7
CVE-2025-53810

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…

Fix: 10.0.10240.21128 / 10.0.14393.8422+
Fix from $1,600 2025-09-09
Windows 10 1507 MEDIUM 6.7
CVE-2025-53808

Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…

Fix: 10.0.10240.21128 / 10.0.14393.8422+
Fix from $1,600 2025-09-09
Unclassified HIGH 8.7
CVE-2023-31322

Type confusion in the ASP could allow an attacker to pass a malformed argument to the Reliability, Availability, and Serviceability trusted applicati…

Mitigation only
Fix from $1,950 2025-09-06
Android CRITICAL 9.8
CVE-2025-22435

In avdt_msg_ind of avdt_msg.cc, there is a possible memory corruption due to type confusion. This could lead to paired device escalation of privilege…

Mitigation only
Fix from $2,300 2025-09-02
Tableau Server CRITICAL 9.3
CVE-2025-26496

Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Salesforce Tableau Server, Tableau Desktop on Windows, Linux (File Upl…

Fix: 2023.3.19 / 2024.2.12+
Fix from $2,300 2025-08-22
365 Apps HIGH 7.8
CVE-2025-53739

Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-08-12
Windows 10 1507 HIGH 7.8
CVE-2025-53726

Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local…

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,950 2025-08-12
Windows 10 1507 HIGH 7.8
CVE-2025-53724

Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local…

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,950 2025-08-12
Windows 10 1507 HIGH 7.8
CVE-2025-53725

Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local…

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,950 2025-08-12
Windows 10 1507 HIGH 8.8
CVE-2025-53143EPSS 6%

Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,950 2025-08-12
Windows 10 1507 HIGH 8.8
CVE-2025-53144EPSS 6%

Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,950 2025-08-12
Windows 10 1507 HIGH 8.8
CVE-2025-53145EPSS 6%

Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,950 2025-08-12
Windows 11 22h2 HIGH 7.8
CVE-2025-50176

Access of resource using incompatible type ('type confusion') in Graphics Kernel allows an authorized attacker to execute code locally.

Fix: 10.0.20348.3989 / 10.0.22621.5768+
Fix from $1,950 2025-08-12
Windows 11 22h2 HIGH 7.8
CVE-2025-50168

Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.

Fix: 10.0.22621.5768 / 10.0.22631.5768+
Fix from $1,950 2025-08-12
Windows 10 1507 HIGH 7.8
CVE-2025-50155

Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local…

Fix: 10.0.10240.21100 / 10.0.14393.8330+
Fix from $1,950 2025-08-12
Openharmony MEDIUM 5.5
CVE-2025-27536

in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through type confusion.

Fix: after 5.0.3
Fix from $1,600 2025-08-11
Unclassified HIGH 7.4
CVE-2025-55137

LinkJoin through 882f196 mishandles lacks type checking in password reset.

Patch available
Fix from $1,950 2025-08-07
Chrome HIGH 8.8
CVE-2025-8011

Type Confusion in V8 in Google Chrome prior to 138.0.7204.168 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 138.0.7204.168+
Fix from $1,950 2025-07-22
Chrome HIGH 8.8
CVE-2025-8010

Type Confusion in V8 in Google Chrome prior to 138.0.7204.168 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…

Fix: 138.0.7204.168+
Fix from $1,950 2025-07-22
Vt Designer HIGH 7.8
CVE-2025-7230

INVT VT-Designer PM3 File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2025-07-21
Openshift Container Platform HIGH 7.5
CVE-2025-7424

A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion du…

Mitigation only
Fix from $1,950 2025-07-10
365 Apps HIGH 7.8
CVE-2025-49702

Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.

Mitigation only
Fix from $1,950 2025-07-08
Windows 10 1507 HIGH 7.8
CVE-2025-48815

Access of resource using incompatible type ('type confusion') in Windows SSDP Service allows an authorized attacker to elevate privileges locally.

Fix: 10.0.10240.21073 / 10.0.14393.8246+
Fix from $1,950 2025-07-08