Vulnerability index

Browse CVEs

827 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Type ConfusionCWE-843 × clear
HIGH 7.8 CVE-2025-66586 In AzeoTech DAQFactory release 20.7 (Build 2555), an access of resource using incompatible type vulnerability can be exploited to cause memory corrup… Daqfactory 21.1+ Fix from $1,9502025-12-11 HIGH 7.8 CVE-2025-62554 Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. 365 Apps Mitigation only Fix from $1,9502025-12-09 HIGH 7.3 CVE-2025-14325 JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thun… Firefox 140.6.0 / 146.0+ Fix from $1,9502025-12-09 CRITICAL 9.8 CVE-2025-14330 JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thun… Firefox 140.6.0 / 146.0+ Fix from $2,3002025-12-09 HIGH 8.8 CVE-2025-13630 Type Confusion in V8 in Google Chrome prior to 143.0.7499.41 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 143.0.7499.40+ Fix from $1,9502025-12-02 HIGH 7.5 CVE-2025-41738 An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime system to access a resource with a pointer of wr… Control For Beaglebone Sl 4.19.0.0+ Fix from $1,9502025-12-01 MEDIUM 5.5 CVE-2025-64314 Permission control vulnerability in the memory management module. Impact: Successful exploitation of this vulnerability may affect confidentiality. Harmonyos No fix yet Fix from $1,6002025-11-28 MEDIUM 5.5 CVE-2025-58310 Permission control vulnerability in the distributed component. Impact: Successful exploitation of this vulnerability may affect service confidentiali… Harmonyos No fix yet Fix from $1,6002025-11-28 HIGH 8.8 CVE-2025-13229 Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 142.0.7444.59 / 142.0.7444.60+ Fix from $1,9502025-11-18 HIGH 8.8 CVE-2025-13230 Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 142.0.7444.59 / 142.0.7444.60+ Fix from $1,9502025-11-18 HIGH 8.8 CVE-2025-13226 Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 142.0.7444.59 / 142.0.7444.60+ Fix from $1,9502025-11-18 HIGH 8.8 CVE-2025-13227 Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 142.0.7444.59 / 142.0.7444.60+ Fix from $1,9502025-11-18 HIGH 8.8 CVE-2025-13228 Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page… Chrome 142.0.7444.59 / 142.0.7444.60+ Fix from $1,9502025-11-18 HIGH 8.8 CVE-2025-13224 Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 142.0.7444.175+ Fix from $1,9502025-11-17 HIGH 8.8 CVE-2025-13223 KEVEPSS 5% Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 142.0.7444.175+ Fix from $1,9502025-11-17 HIGH 8.8 CVE-2025-12428EPSS 7% Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chro… Chrome 142.0.7444.59+ Fix from $1,9502025-11-10 MEDIUM 5.3 CVE-2022-50590 SuiteCRM versions prior to 7.12.6 contain a type confusion vulnerability within the processing of the ‘module’ parameter within the ‘deleteAttachment… Suitecrm 7.12.6+ Fix from $1,6002025-11-06 CRITICAL 9.8 CVE-2025-47151 A type confusion vulnerability exists in the lasso_node_impl_init_from_xml functionality of Entr'ouvert Lasso 2.5.1 and 2.8.2. A specially crafte… Lasso Mitigation only Fix from $2,3002025-11-05 HIGH 8.1 CVE-2025-62518 astral-tokio-tar is a tar archive reading/writing library for async Rust. Versions of astral-tokio-tar prior to 0.5.6 contain a boundary parsing vuln… Patch available Fix from $1,9502025-10-21 HIGH 7.8 CVE-2025-59231 Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20059+ Fix from $1,9502025-10-14 HIGH 7.8 CVE-2025-59233 Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. 365 Apps 16.0.10417.20059+ Fix from $1,9502025-10-14 MEDIUM 6.5 CVE-2025-61911 python-ldap is a lightweight directory access protocol (LDAP) client API for Python. In versions prior to 3.4.5, the sanitization method `ldap.filter… Python Ldap 3.4.5+ Fix from $1,6002025-10-10 CRITICAL 9.8 CVE-2025-10585 KEVEPSS 5% Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag… Chrome 140.0.7339.185+ Fix from $2,3002025-09-24 HIGH 7.8 CVE-2025-8354 A maliciously crafted RFA file, when parsed through Autodesk Revit, can force a Type Confusion vulnerability. A malicious actor may leverage this vul… Revit 2026.3+ Fix from $1,9502025-09-23 CRITICAL 9.8 CVE-2025-59717 In the @digitalocean/do-markdownit package through 1.16.1 (in npm), the callout and fence_environment plugins perform .includes substring matching if… Do Markdownit after 1.16.1 Fix from $2,3002025-09-19 HIGH 7.8 CVE-2025-8000 Ashlar-Vellum Cobalt LI File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr… Cobalt Mitigation only Fix from $1,9502025-09-17 HIGH 7.8 CVE-2025-8002 Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr… Cobalt Mitigation only Fix from $1,9502025-09-17 HIGH 7.8 CVE-2025-8005 Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr… Cobalt Mitigation only Fix from $1,9502025-09-17 HIGH 7.8 CVE-2025-7995 Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr… Cobalt Mitigation only Fix from $1,9502025-09-17 HIGH 7.8 CVE-2025-7999 Ashlar-Vellum Cobalt AR File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitr… Cobalt Mitigation only Fix from $1,9502025-09-17