Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
HIGH 8.8 CVE-2026-16420 Type Confusion in WebAudio in Google Chrome prior to 150.0.7871.182 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafte… Chrome 150.0.7871.182+ Fix from $1,9502026-07-21 CRITICAL 9.8 CVE-2026-16410 JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153 and Thunderbird 153. Firefox 153.0 / 153.0.0+ Fix from $2,3002026-07-21 CRITICAL 9.1 CVE-2026-16392 JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153 and Thunderbird 153. Firefox 153.0 / 153.0.0+ Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-16355 JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thun… Firefox 115.38.0 / 140.13.0+ Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-16363 JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Th… Firefox 140.13.0 / 153.0+ Fix from $2,3002026-07-21 CRITICAL 9.8 CVE-2026-64608 Heap type confusion and out-of-bounds read/write in the Apache Fory C++ implementation. When deserializing data in compatible mode, the field-skip pa… Fory 1.4.0+ Fix from $2,3002026-07-21 HIGH 8.8 CVE-2026-15776 Inappropriate implementation in V8 in Google Chrome prior to 150.0.7871.125 allowed a remote attacker to execute arbitrary code inside a sandbox via … Chrome 150.0.7871.125+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-58541 Access of resource using incompatible type ('type confusion') in Windows DWM allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.5 CVE-2026-57108 Access of resource using incompatible type ('type confusion') in .NET Core allows an unauthorized attacker to deny service over a network. .net 8.0.29 / 9.0.18+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55024 Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20175+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55025 Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20175+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-55022 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502026-07-14 MEDIUM 6.5 CVE-2026-54116 Access of resource using incompatible type ('type confusion') in SQL Server allows an authorized attacker to disclose information over a network. Sql Server 2025 17.0.1125.2 / 17.0.4060.2+ Fix from $1,6002026-07-14 HIGH 8.1 CVE-2026-50686 Access of resource using incompatible type ('type confusion') in Windows OLE allows an unauthorized attacker to execute code over a network. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-50491 Out-of-bounds read in Code Integrity DLL (ci.dll) allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-50421 Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allows an authorized attacker to el… Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 HIGH 7.8 CVE-2026-50390 Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.9339 / 10.0.17763.9020+ Fix from $1,9502026-07-14 MEDIUM 5.5 CVE-2026-50381 Access of resource using incompatible type ('type confusion') in Composite Image File System Driver allows an authorized attacker to disclose informa… Windows 10 21h2 10.0.19044.7548 / 10.0.19045.7548+ Fix from $1,6002026-07-14 HIGH 8.8 CVE-2026-55771 CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. In versions prior to 4.9… Mitigation only Fix from $1,9502026-07-13 HIGH 8.8 CVE-2026-55772 CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. In versions prior to 2.3… No fix yet Fix from $1,9502026-07-13 MEDIUM 6.1 CVE-2026-58305 Access of resource using incompatible type ('type confusion') vulnerability in Samsung Open Source Escargot allows Pointer Manipulation. This issue … Patch available Fix from $1,6002026-07-09 HIGH 7.8 CVE-2026-57254 There is an abnormal annotation within the PDF that is referenced by other objects. When the application parses the PDF, it fails to perform proper t… Pdf Editor after 2026.1.1.36485 Fix from $1,9502026-07-08 MEDIUM 5.0 CVE-2026-59152 LangSmith Client SDKs provide SDK's for interacting with the LangSmith platform. Prior to 0.8.18, an attacker who can send an HTTP request to a serve… Mitigation only Fix from $1,6002026-07-06 HIGH 8.3 CVE-2026-58295 Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to bypass a security… Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 8.3 CVE-2026-58285 Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over… Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 8.3 CVE-2026-58289 Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over… Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 7.5 CVE-2026-58290 Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over… Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 MEDIUM 6.9 CVE-2026-58283 Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing … Edge Chromium 150.0.4078.48+ Fix from $1,6002026-07-03 HIGH 7.5 CVE-2026-57975 Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over… Edge Chromium 150.0.4078.48+ Fix from $1,9502026-07-03 HIGH 8.8 CVE-2026-14431 Type Confusion in V8 in Google Chrome prior to 150.0.7871.46 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML … Chrome 150.0.7871.46+ Fix from $1,9502026-07-01