VYPR

CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

BaseIncomplete

Description

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

Hierarchy (View 1000)

Parents

Children

none

CVEs mapped to this weakness (864)

page 3 of 44
  • CVE-2026-64608CriJul 21, 2026
    risk 0.64cvss 9.8epss 0.00

    Heap type confusion and out-of-bounds read/write in the Apache Fory C++ implementation. When deserializing data in compatible mode, the field-skip paths do not correctly validate the declared field types against the actual data, so input with an inconsistent schema can cause…

  • CVE-2026-13776CriJun 30, 2026
    risk 0.64cvss 9.8epss 0.00

    Type Confusion in Dawn in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

  • CVE-2025-70023CriApr 14, 2026
    risk 0.64cvss 9.8epss 0.00

    An issue pertaining to CWE-843: Access of Resource Using Incompatible Type was discovered in transloadit uppy v0.25.6.

  • CVE-2026-4702CriMar 24, 2026
    risk 0.64cvss 9.8epss 0.00

    JIT miscompilation in the JavaScript Engine component. This vulnerability was fixed in Firefox 149, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.

  • CVE-2026-4698CriMar 24, 2026
    risk 0.64cvss 9.8epss 0.01

    JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 149, Firefox ESR 115.34, Firefox ESR 140.9, Thunderbird 149, and Thunderbird 140.9.

  • CVE-2026-2796CriFeb 24, 2026
    risk 0.64cvss 9.8epss 0.01

    JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 148 and Thunderbird 148.

  • CVE-2025-65570CriDec 29, 2025
    risk 0.64cvss 9.8epss 0.00

    A type confusion in jsish 2.0 allows incorrect control flow during execution of the OP_NEXT opcode. When an “instanceof” expression uses an array element access as the left-hand operand inside a for-in loop, the instructions implementation leaves an additional array…

  • CVE-2025-14330CriDec 9, 2025
    risk 0.64cvss 9.8epss 0.01

    JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 146, Firefox ESR 140.6, Thunderbird 146, and Thunderbird 140.6.

  • CVE-2025-47151CriNov 5, 2025
    risk 0.64cvss 9.8epss 0.01

    A type confusion vulnerability exists in the lasso_node_impl_init_from_xml functionality of Entr'ouvert Lasso 2.5.1 and 2.8.2. A specially crafted SAML response can lead to an arbitrary code execution. An attacker can send a malformed SAML response to trigger this…

  • CVE-2025-22435CriSep 2, 2025
    risk 0.64cvss 9.8epss 0.00

    In avdt_msg_ind of avdt_msg.cc, there is a possible memory corruption due to type confusion. This could lead to paired device escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-43498CriNov 12, 2024
    risk 0.64cvss 9.8epss 0.04

    .NET and Visual Studio Remote Code Execution Vulnerability

  • CVE-2024-7825CriOct 3, 2024
    risk 0.64cvss 9.8epss 0.00

    Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (wrUrl.Dll modules) allows Functionality Misuse.This issue affects SecureAnywhere - Web Shield: before 2.1.2.3.

  • CVE-2024-7824CriOct 3, 2024
    risk 0.64cvss 9.8epss 0.00

    Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Webroot SecureAnywhere - Web Shield on Windows, ARM, 64 bit, 32 bit (wrUrl.Dll modules) allows Functionality Misuse.This issue affects SecureAnywhere - Web Shield: before 2.1.2.3.

  • CVE-2024-8385CriSep 3, 2024
    risk 0.64cvss 9.8epss 0.01

    A difference in the handling of StructFields and ArrayTypes in WASM could be used to trigger an exploitable type confusion vulnerability. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Thunderbird < 128.2.

  • CVE-2024-8381CriSep 3, 2024
    risk 0.64cvss 9.8epss 0.04

    A potentially exploitable type confusion could be triggered when looking up a property name on an object being used as the `with` environment. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, Firefox ESR < 115.15, Thunderbird < 128.2, and Thunderbird < 115.15.

  • CVE-2024-38178HigKEVAug 13, 2024
    risk 0.64cvss 7.5epss 0.41

    Scripting Engine Memory Corruption Vulnerability

  • CVE-2024-20078CriJul 1, 2024
    risk 0.64cvss 9.8epss 0.00

    In venc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08737250; Issue ID: MSV-1452.

  • CVE-2024-5436CriMay 31, 2024
    risk 0.64cvss 9.8epss 0.01

    Type confusion in Snapchat LensCore could lead to denial of service or arbitrary code execution prior to version 12.88. We recommend upgrading to version 12.88 or above.

  • CVE-2023-43154CriSep 27, 2023
    risk 0.64cvss 9.8epss 0.01

    In Macrob7 Macs Framework Content Management System (CMS) 1.1.4f, loose comparison in "isValidLogin()" function during login attempt results in PHP type confusion vulnerability that leads to authentication bypass and takeover of the administrator account.

  • CVE-2023-42464CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.02

    A Type Confusion vulnerability was found in the Spotlight RPC functions in afpd in Netatalk 3.1.x before 3.1.17. When parsing Spotlight RPC packets, one encoded data structure is a key-value style dictionary where the keys are character strings, and the values can be any of the…