Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
HIGH 8.8 CVE-2025-21342 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Edge Chromium 133.0.3065.51+ Fix from $1,9502025-02-06 HIGH 8.8 CVE-2025-21408 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability Edge Chromium 133.0.3065.51+ Fix from $1,9502025-02-06 CRITICAL 9.8 CVE-2025-0147 Type confusion in the Zoom Workplace App for Linux before 6.2.10 may allow an authorized user to conduct an escalation of privilege via network acces… Meeting Software Development Kit 6.2.10+ Fix from $2,3002025-01-30 HIGH 7.7 CVE-2024-40676 In checkKeyIntent of AccountManagerService.java, there is a possible way to bypass intent security check and install an unknown app due to a confused… Android Mitigation only Fix from $1,9502025-01-28 HIGH 8.0 CVE-2025-24137 A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.4, macOS Sequoia 15.3, macOS … Ipados 2.3 / 11.3+ Fix from $1,9502025-01-27 HIGH 7.5 CVE-2025-24129 A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, macOS Sonoma 14.7.5, … Ipados 2.3 / 11.3+ Fix from $1,9502025-01-27 MEDIUM 5.5 CVE-2024-54507 A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 18.2 and iPadOS 18.2, macOS Sequoia 15.2. An attacker … Ipados 15.2 / 18.2+ Fix from $1,6002025-01-27 HIGH 7.9 CVE-2025-22153 RestrictedPython is a tool that helps to define a subset of the Python language which allows to provide a program input into a trusted environment. V… Patch available Fix from $1,9502025-01-23 HIGH 7.8 CVE-2025-21356 Microsoft Office Visio Remote Code Execution Vulnerability 365 Apps Patch available Fix from $1,9502025-01-14 HIGH 7.8 CVE-2025-21326 Internet Explorer Remote Code Execution Vulnerability Windows Server 2022 23h2 10.0.25398.1369 / 10.0.26100.2894+ Fix from $1,9502025-01-14 MEDIUM 5.9 CVE-2025-21225 Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability Windows Server 2016 10.0.14393.7699 / 10.0.17763.6775+ Fix from $1,6002025-01-14 HIGH 7.8 CVE-2024-13169 An out-of-bounds read in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a local authenticat… Endpoint Manager 2022+ Fix from $1,9502025-01-14 MEDIUM 5.3 CVE-2024-13275 Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Drupal Security Kit allows HTTP DoS.This issue affects Security Kit: f… Security Kit 2.0.3+ Fix from $1,6002025-01-09 HIGH 8.8 CVE-2025-0291EPSS 8% Type Confusion in V8 in Google Chrome prior to 131.0.6778.264 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML… Chrome 131.0.6778.264+ Fix from $1,9502025-01-08 HIGH 7.8 CVE-2024-13047 Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr… Cobalt Mitigation only Fix from $1,9502024-12-30 HIGH 7.8 CVE-2024-13049 Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr… Cobalt Mitigation only Fix from $1,9502024-12-30 HIGH 7.8 CVE-2024-12836 Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execu… Drasimucad after 1.02.00.00 Fix from $1,9502024-12-30 HIGH 7.8 CVE-2024-12834 Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execu… Drasimucad after 1.02.00.00 Fix from $1,9502024-12-30 HIGH 7.5 CVE-2024-56522 An issue was discovered in TCPDF before 6.8.0. unserializeTCPDFtag uses != (aka loose comparison) and does not use a constant-time function to compar… Tcpdf 6.8.0+ Fix from $1,9502024-12-27 HIGH 8.8 CVE-2024-12692EPSS 7% Type Confusion in V8 in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 131.0.6778.204+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-54505 A type confusion issue was addressed with improved memory handling. This issue is fixed in Safari 18.2, iOS 18.2 and iPadOS 18.2, iPadOS 17.7.3, macO… Safari 2.2 / 11.2+ Fix from $1,9502024-12-12 MEDIUM 5.5 CVE-2024-54524 A logic issue was addressed with improved file handling. This issue is fixed in macOS Sequoia 15.2. A malicious app may be able to access arbitrary f… macOS 15.2+ Fix from $1,6002024-12-12 HIGH 8.1 CVE-2024-49119 Windows Remote Desktop Services Remote Code Execution Vulnerability Windows Server 2016 10.0.14393.7606 / 10.0.17763.6659+ Fix from $1,9502024-12-12 HIGH 8.8 CVE-2024-12381 Type Confusion in V8 in Google Chrome prior to 131.0.6778.139 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 131.0.6778.139+ Fix from $1,9502024-12-12 HIGH 8.8 CVE-2024-12053 Type Confusion in V8 in Google Chrome prior to 131.0.6778.108 allowed a remote attacker to potentially exploit object corruption via a crafted HTML p… Chrome 131.0.6778.108+ Fix from $1,9502024-12-03 HIGH 7.8 CVE-2024-11507 IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o… Irfanview Mitigation only Fix from $1,9502024-11-22 HIGH 7.8 CVE-2024-11508 IrfanView DXF File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o… Irfanview Mitigation only Fix from $1,9502024-11-22 HIGH 7.8 CVE-2018-9471 In the deserialization constructor of NanoAppFilter.java, there is a possible loss of data due to type confusion. This could lead to local escalation… Android Patch available Fix from $1,9502024-11-20 HIGH 8.8 CVE-2024-11395 Type Confusion in V8 in Google Chrome prior to 131.0.6778.85 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 131.0.6778.85+ Fix from $1,9502024-11-19 HIGH 7.8 CVE-2018-9339 In writeTypedArrayList and readTypedArrayList of Parcel.java, there is a possible escalation of privilege due to type confusion. This could lead to l… Android Patch available Fix from $1,9502024-11-19