Vulnerabilities > Access of Resource Using Incompatible Type ('Type Confusion')

DATE CVE VULNERABILITY TITLE RISK
2020-09-14 CVE-2020-25575 Type Confusion vulnerability in Failure Project Failure
An issue was discovered in the failure crate through 0.1.5 for Rust.
network
low complexity
failure-project CWE-843
critical
9.8
2020-09-04 CVE-2020-1911 Type Confusion vulnerability in Facebook Hermes
A type confusion vulnerability when resolving properties of JavaScript objects with specially-crafted prototype chains in Facebook Hermes prior to commit fe52854cdf6725c2eaa9e125995da76e6ceb27da allows attackers to potentially execute arbitrary code via crafted JavaScript.
network
low complexity
facebook CWE-843
critical
9.8
2020-08-29 CVE-2020-25016 Type Confusion vulnerability in Rgb-Rust Project Rgb-Rust 0.4.0/0.8.14/0.8.16
A safety violation was discovered in the rgb crate before 0.8.20 for Rust, leading to (for example) dereferencing of arbitrary pointers or disclosure of uninitialized memory.
network
low complexity
rgb-rust-project CWE-843
critical
9.1
2020-08-10 CVE-2020-15656 Type Confusion vulnerability in multiple products
JIT optimizations involving the Javascript arguments object could confuse later optimizations.
network
low complexity
mozilla opensuse canonical CWE-843
8.8
2020-08-06 CVE-2020-16229 Type Confusion vulnerability in Advantech Webaccess/Hmi Designer 2.1/2.1.9.31
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior.
local
low complexity
advantech CWE-843
7.8
2020-07-22 CVE-2020-6533 Type Confusion vulnerability in multiple products
Type Confusion in V8 in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google opensuse debian fedoraproject CWE-843
8.8
2020-07-22 CVE-2020-6512 Type Confusion vulnerability in multiple products
Type Confusion in V8 in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google debian opensuse fedoraproject CWE-843
8.8
2020-07-17 CVE-2020-0226 Type Confusion vulnerability in Google Android 10.0
In createWithSurfaceParent of Client.cpp, there is a possible out of bounds write due to type confusion.
local
low complexity
google CWE-843
7.8
2020-07-17 CVE-2020-0224 Type Confusion vulnerability in Google Android
In FastKeyAccumulator::GetKeysSlow of keys.cc, there is a possible out of bounds write due to type confusion.
network
low complexity
google CWE-843
critical
9.8
2020-07-15 CVE-2019-17639 Type Confusion vulnerability in Eclipse Openj9
In Eclipse OpenJ9 prior to version 0.21 on Power platforms, calling the System.arraycopy method with a length longer than the length of the source or destination array can, in certain specially crafted code patterns, cause the current method to return prematurely with an undefined return value.
network
low complexity
eclipse CWE-843
5.3