Vulnerabilities > Access of Resource Using Incompatible Type ('Type Confusion')

DATE CVE VULNERABILITY TITLE RISK
2022-07-23 CVE-2022-1096 Type Confusion vulnerability in Google Chrome
Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2022-07-23 CVE-2022-1134 Type Confusion vulnerability in Google Chrome
Type confusion in V8 in Google Chrome prior to 100.0.4896.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2022-07-04 CVE-2022-34918 Type Confusion vulnerability in multiple products
An issue was discovered in the Linux kernel through 5.18.9.
local
low complexity
linux debian canonical netapp CWE-843
7.8
2022-06-02 CVE-2021-26635 Type Confusion vulnerability in Bandisoft ARK Library
In the code that verifies the file size in the ark library, it is possible to manipulate the offset read from the target file due to the wrong use of the data type.
local
low complexity
bandisoft CWE-843
7.8
2022-06-02 CVE-2022-1786 Type Confusion vulnerability in multiple products
A use-after-free flaw was found in the Linux kernel’s io_uring subsystem in the way a user sets up a ring with IORING_SETUP_IOPOLL with more than one task completing submissions on this ring.
local
low complexity
linux netapp CWE-843
7.8
2022-05-11 CVE-2022-30557 Type Confusion vulnerability in Foxit PDF Editor and PDF Reader
Foxit PDF Reader and PDF Editor before 11.2.2 have a Type Confusion issue that causes a crash because of Unsigned32 mishandling during JavaScript execution.
network
low complexity
foxit CWE-843
7.5
2022-04-05 CVE-2022-0457 Type Confusion vulnerability in Google Chrome
Type confusion in V8 in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2022-04-05 CVE-2022-0795 Type Confusion vulnerability in Google Chrome
Type confusion in Blink Layout in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2022-03-29 CVE-2021-46743 Type Confusion vulnerability in Google Firebase PHP-Jwt
In Firebase PHP-JWT before 6.0.0, an algorithm-confusion issue (e.g., RS256 / HS256) exists via the kid (aka Key ID) header, when multiple types of keys are loaded in a key ring.
network
low complexity
google CWE-843
critical
9.1
2022-03-28 CVE-2021-26600 Type Confusion vulnerability in Impresscms
ImpressCMS before 1.4.3 has plugins/preloads/autologin.php type confusion with resultant Authentication Bypass (!= instead of !==).
network
low complexity
impresscms CWE-843
critical
9.8