Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
HIGH 7.8 CVE-2026-26110 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps 16.0.19822.20000+ Fix from $1,9502026-03-10 CRITICAL 9.8 CVE-2026-2796 JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148. Firefox 148.0+ Fix from $2,3002026-02-24 HIGH 7.5 CVE-2026-2783 Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 148, Firefox ESR 14… Firefox 140.8.0 / 148.0+ Fix from $1,9502026-02-24 MEDIUM 6.5 CVE-2025-14799 The Brevo - Email, SMS, Web Push, Chat, and more. plugin for WordPress is vulnerable to authorization bypass due to type juggling in all versions up … Mitigation only Fix from $1,6002026-02-18 HIGH 8.4 CVE-2023-31323 Type confusion in the AMD Secure Processor (ASP) could allow an attacker to pass a malformed argument to the External Global Memory Interconnect Trus… Mitigation only Fix from $1,9502026-02-12 HIGH 7.8 CVE-2026-21519 KEV Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to elevate privileges locally. Windows 10 1607 10.0.14393.8868 / 10.0.17763.8389+ Fix from $1,9502026-02-10 HIGH 7.8 CVE-2026-21330 After Effects versions 25.6 and earlier are affected by an Access of Resource Using Incompatible Type ('Type Confusion') vulnerability that could res… After Effects 25.6.4+ Fix from $1,9502026-02-10 MEDIUM 5.5 CVE-2026-24914 Type confusion vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability. Harmonyos No fix yet Fix from $1,6002026-02-06 HIGH 7.5 CVE-2026-25537 jsonwebtoken is a JWT lib in rust. Prior to version 10.3.0, there is a Type Confusion vulnerability in jsonwebtoken, specifically, in its claim valid… Jsonwebtoken 10.3.0+ Fix from $1,9502026-02-04 HIGH 8.5 CVE-2025-29867 Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Hancom Inc. Hancom Office 2018, Hancom Inc. Hancom Office 2020, Hancom… Mitigation only Fix from $1,9502026-02-04 HIGH 8.8 CVE-2026-1862 Type Confusion in V8 in Google Chrome prior to 144.0.7559.132 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 144.0.7559.132+ Fix from $1,9502026-02-03 MEDIUM 6.9 CVE-2025-65080 A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. This vulnerability can be leveraged by a… Mitigation only Fix from $1,6002026-02-03 HIGH 7.1 CVE-2026-25503 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,9502026-02-03 MEDIUM 6.5 CVE-2025-12899 A flaw in Zephyr’s network stack allows an IPv4 packet containing ICMP type 128 to be misclassified as an ICMPv6 Echo Request. This results in an out… Mitigation only Fix from $1,6002026-01-30 CRITICAL 9.1 CVE-2026-24874 Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in themrdemonized xray-monolith.This issue affects xray-monolith: before … Patch available Fix from $2,3002026-01-27 HIGH 7.8 CVE-2026-20860EPSS 8% Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to eleva… Windows 10 1607 10.0.14393.8783 / 10.0.17763.8276+ Fix from $1,9502026-01-13 HIGH 7.8 CVE-2026-20811 Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally. Windows 11 23h2 10.0.20348.4648 / 10.0.22631.6491+ Fix from $1,9502026-01-13 MEDIUM 6.1 CVE-2026-22028 Preact, a lightweight web development framework, JSON serialization protection to prevent Virtual DOM elements from being constructed from arbitrary … Preact 10.26.10 / 10.27.3+ Fix from $1,6002026-01-08 MEDIUM 6.5 CVE-2026-21689 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 6.3 CVE-2026-21690 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 MEDIUM 6.5 CVE-2026-21691 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,6002026-01-07 HIGH 8.8 CVE-2026-21692 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,9502026-01-07 HIGH 8.8 CVE-2026-21693 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,9502026-01-07 HIGH 8.8 CVE-2026-22046 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.2+ Fix from $1,9502026-01-07 HIGH 8.8 CVE-2026-21683 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of International Color Consortium (ICC) co… Iccdev 2.3.1.1+ Fix from $1,9502026-01-07 CRITICAL 9.8 CVE-2026-21854 The Tarkov Data Manager is a tool to manage the Tarkov item data. Prior to 02 January 2025, an authentication bypass vulnerability in the login endpo… Tarkov Data Manager 2025-01-02+ Fix from $2,3002026-01-07 HIGH 7.8 CVE-2026-21505 iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color management profiles. Prior to… Iccdev 2.3.1.2+ Fix from $1,9502026-01-07 MEDIUM 6.6 CVE-2026-21493 iccDEV provides a set of libraries and tools for working with ICC color management profiles. Versions 2.3.1.1 and below are vulnerable to Type Confus… Iccdev 2.3.1.2+ Fix from $1,6002026-01-06 CRITICAL 9.8 CVE-2025-65570 A type confusion in jsish 2.0 allows incorrect control flow during execution of the OP_NEXT opcode. When an “instanceof” expression uses an array ele… Jsish Mitigation only Fix from $2,3002025-12-29 HIGH 7.5 CVE-2025-43506 A logic error was addressed with improved error handling. This issue is fixed in macOS Tahoe 26.1. iCloud Private Relay may not activate when more th… macOS 26.1+ Fix from $1,9502025-12-12