Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.8
CVE-2026-26110
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
16.0.19822.20000+
CRITICAL 9.8
CVE-2026-2796
JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.
Firefox
148.0+
HIGH 7.5
CVE-2026-2783
Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 148, Firefox ESR 14…
Firefox
140.8.0 / 148.0+
MEDIUM 6.5
CVE-2025-14799
The Brevo - Email, SMS, Web Push, Chat, and more. plugin for WordPress is vulnerable to authorization bypass due to type juggling in all versions up …
Mitigation only
HIGH 8.4
CVE-2023-31323
Type confusion in the AMD Secure Processor (ASP) could allow an attacker to pass a malformed argument to the External Global Memory Interconnect Trus…
Mitigation only
HIGH 7.8
CVE-2026-21519 KEV
Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
Windows 10 1607
10.0.14393.8868 / 10.0.17763.8389+
HIGH 7.8
CVE-2026-21330
After Effects versions 25.6 and earlier are affected by an Access of Resource Using Incompatible Type ('Type Confusion') vulnerability that could res…
After Effects
25.6.4+
MEDIUM 5.5
CVE-2026-24914
Type confusion vulnerability in the camera module.
Impact: Successful exploitation of this vulnerability may affect availability.
Harmonyos
No fix yet
HIGH 7.5
CVE-2026-25537
jsonwebtoken is a JWT lib in rust. Prior to version 10.3.0, there is a Type Confusion vulnerability in jsonwebtoken, specifically, in its claim valid…
Jsonwebtoken
10.3.0+
HIGH 8.5
CVE-2025-29867
Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Hancom Inc. Hancom Office 2018, Hancom Inc. Hancom Office 2020, Hancom…
Mitigation only
HIGH 8.8
CVE-2026-1862
Type Confusion in V8 in Google Chrome prior to 144.0.7559.132 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…
Chrome
144.0.7559.132+
MEDIUM 6.9
CVE-2025-65080
A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. This vulnerability can be leveraged by a…
Mitigation only
HIGH 7.1
CVE-2026-25503
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to…
Iccdev
2.3.1.2+
MEDIUM 6.5
CVE-2025-12899
A flaw in Zephyr’s network stack allows an IPv4 packet containing ICMP type 128 to be misclassified as an ICMPv6 Echo Request. This results in an out…
Mitigation only
CRITICAL 9.1
CVE-2026-24874
Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in themrdemonized xray-monolith.This issue affects xray-monolith: before …
Patch available
HIGH 7.8
CVE-2026-20860EPSS 8%
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva…
Windows 10 1607
10.0.14393.8783 / 10.0.17763.8276+
HIGH 7.8
CVE-2026-20811
Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
Windows 11 23h2
10.0.20348.4648 / 10.0.22631.6491+
MEDIUM 6.1
CVE-2026-22028
Preact, a lightweight web development framework, JSON serialization protection to prevent Virtual DOM elements from being constructed from arbitrary …
Preact
10.26.10 / 10.27.3+
MEDIUM 6.5
CVE-2026-21689
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…
Iccdev
2.3.1.2+
MEDIUM 6.3
CVE-2026-21690
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…
Iccdev
2.3.1.2+
MEDIUM 6.5
CVE-2026-21691
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…
Iccdev
2.3.1.2+
HIGH 8.8
CVE-2026-21692
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…
Iccdev
2.3.1.2+
HIGH 8.8
CVE-2026-21693
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…
Iccdev
2.3.1.2+
HIGH 8.8
CVE-2026-22046
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…
Iccdev
2.3.1.2+
HIGH 8.8
CVE-2026-21683
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co…
Iccdev
2.3.1.1+
CRITICAL 9.8
CVE-2026-21854
The Tarkov Data Manager is a tool to manage the Tarkov item data. Prior to 02 January 2025, an authentication bypass vulnerability in the login endpo…
Tarkov Data Manager
2025-01-02+
HIGH 7.8
CVE-2026-21505
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to…
Iccdev
2.3.1.2+
MEDIUM 6.6
CVE-2026-21493
iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below are vulnerable to Type Confus…
Iccdev
2.3.1.2+
CRITICAL 9.8
CVE-2025-65570
A type confusion in jsish 2.0 allows incorrect control flow during execution of the OP_NEXT opcode. When an “instanceof” expression uses an array ele…
Jsish
Mitigation only
HIGH 7.5
CVE-2025-43506
A logic error was addressed with improved error handling. This issue is fixed in macOS Tahoe 26.1. iCloud Private Relay may not activate when more th…
macOS
26.1+