Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.5
CVE-2025-43355
A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 18.7 and iPadOS 18.7, iOS 26 and iPadOS 26, macOS Sequ…
Ipados
14.8 / 15.7+
MEDIUM 6.2
CVE-2025-43297
A type confusion issue was addressed with improved memory handling. This issue is fixed in macOS Tahoe 26. An app may be able to cause a denial-of-se…
macOS
26.0+
HIGH 7.8
CVE-2025-55236
Time-of-check time-of-use (toctou) race condition in Graphics Kernel allows an authorized attacker to execute code locally.
Windows 10 1809
10.0.17763.7792 / 10.0.19044.6332+
MEDIUM 6.7
CVE-2025-54915
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
MEDIUM 6.7
CVE-2025-54109
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
MEDIUM 6.7
CVE-2025-54104
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
MEDIUM 6.7
CVE-2025-54094
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
MEDIUM 6.7
CVE-2025-53810
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
MEDIUM 6.7
CVE-2025-53808
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privilege…
Windows 10 1507
10.0.10240.21128 / 10.0.14393.8422+
HIGH 8.7
CVE-2023-31322
Type confusion in the ASP could allow an attacker to pass a malformed argument to the Reliability, Availability, and Serviceability trusted applicati…
Mitigation only
CRITICAL 9.8
CVE-2025-22435
In avdt_msg_ind of avdt_msg.cc, there is a possible memory corruption due to type confusion. This could lead to paired device escalation of privilege…
Android
Mitigation only
CRITICAL 9.3
CVE-2025-26496
Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Salesforce Tableau Server, Tableau Desktop on Windows, Linux (File Upl…
Tableau Server
2023.3.19 / 2024.2.12+
HIGH 7.8
CVE-2025-53739
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-53726
Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local…
Windows 10 1507
10.0.10240.21100 / 10.0.14393.8330+
HIGH 7.8
CVE-2025-53724
Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local…
Windows 10 1507
10.0.10240.21100 / 10.0.14393.8330+
HIGH 7.8
CVE-2025-53725
Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local…
Windows 10 1507
10.0.10240.21100 / 10.0.14393.8330+
HIGH 8.8
CVE-2025-53143EPSS 6%
Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.
Windows 10 1507
10.0.10240.21100 / 10.0.14393.8330+
HIGH 8.8
CVE-2025-53144EPSS 6%
Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.
Windows 10 1507
10.0.10240.21100 / 10.0.14393.8330+
HIGH 8.8
CVE-2025-53145EPSS 6%
Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute code over a network.
Windows 10 1507
10.0.10240.21100 / 10.0.14393.8330+
HIGH 7.8
CVE-2025-50176
Access of resource using incompatible type ('type confusion') in Graphics Kernel allows an authorized attacker to execute code locally.
Windows 11 22h2
10.0.20348.3989 / 10.0.22621.5768+
HIGH 7.8
CVE-2025-50168
Access of resource using incompatible type ('type confusion') in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
Windows 11 22h2
10.0.22621.5768 / 10.0.22631.5768+
HIGH 7.8
CVE-2025-50155
Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to elevate privileges local…
Windows 10 1507
10.0.10240.21100 / 10.0.14393.8330+
MEDIUM 5.5
CVE-2025-27536
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through type confusion.
Openharmony
after 5.0.3
HIGH 7.4
CVE-2025-55137
LinkJoin through 882f196 mishandles lacks type checking in password reset.
Patch available
HIGH 8.8
CVE-2025-8011
Type Confusion in V8 in Google Chrome prior to 138.0.7204.168 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…
Chrome
138.0.7204.168+
HIGH 8.8
CVE-2025-8010
Type Confusion in V8 in Google Chrome prior to 138.0.7204.168 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML pag…
Chrome
138.0.7204.168+
HIGH 7.8
CVE-2025-7230
INVT VT-Designer PM3 File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…
Vt Designer
Mitigation only
HIGH 7.5
CVE-2025-7424
A flaw was found in the libxslt library. The same memory field, psvi, is used for both stylesheet and input data, which can lead to type confusion du…
Openshift Container Platform
Mitigation only
HIGH 7.8
CVE-2025-49702
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
365 Apps
Mitigation only
HIGH 7.8
CVE-2025-48815
Access of resource using incompatible type ('type confusion') in Windows SSDP Service allows an authorized attacker to elevate privileges locally.
Windows 10 1507
10.0.10240.21073 / 10.0.14393.8246+