Vulnerabilities > Access of Resource Using Incompatible Type ('Type Confusion')

DATE CVE VULNERABILITY TITLE RISK
2019-08-07 CVE-2019-14537 Type Confusion vulnerability in Yourls
YOURLS through 1.7.3 is affected by a type juggling vulnerability in the api component that can result in login bypass.
network
low complexity
yourls CWE-843
critical
9.8
2019-08-05 CVE-2019-10980 Type Confusion vulnerability in Laquisscada Scada 4.3.1.71
A type confusion vulnerability may be exploited when LAquis SCADA 4.3.1.71 processes a specially crafted project file.
local
low complexity
laquisscada CWE-843
7.8
2019-07-23 CVE-2019-9819 Type Confusion vulnerability in Mozilla Thunderbird
A vulnerability where a JavaScript compartment mismatch can occur while working with the fetch API, resulting in a potentially exploitable crash.
network
low complexity
mozilla CWE-843
critical
9.8
2019-07-23 CVE-2019-9816 Type Confusion vulnerability in Mozilla Thunderbird
A possible vulnerability exists where type confusion can occur when manipulating JavaScript objects in object groups, allowing for the bypassing of security checks within these groups.
network
high complexity
mozilla CWE-843
5.9
2019-07-23 CVE-2019-11707 Type Confusion vulnerability in Mozilla Thunderbird
A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop.
network
low complexity
mozilla CWE-843
8.8
2019-07-23 CVE-2019-11706 Type Confusion vulnerability in Mozilla Thunderbird
A flaw in Thunderbird's implementation of iCal causes a type confusion in icaltimezone_get_vtimezone_properties when processing certain email messages, resulting in a crash.
network
low complexity
mozilla CWE-843
7.5
2019-07-01 CVE-2019-13118 Type Confusion vulnerability in multiple products
In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of uninitialized stack data.
5.3
2019-06-12 CVE-2019-0988 Type Confusion vulnerability in Microsoft Internet Explorer 10/11
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'.
network
high complexity
microsoft CWE-843
7.5
2019-06-12 CVE-2019-0920 Type Confusion vulnerability in Microsoft Internet Explorer 10/11/9
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'Scripting Engine Memory Corruption Vulnerability'.
network
high complexity
microsoft CWE-843
7.5
2019-06-07 CVE-2019-2097 Type Confusion vulnerability in Google Android
In HAliasAnalyzer.Query of hydrogen-alias-analysis.h, there is possible memory corruption due to type confusion.
network
low complexity
google CWE-843
critical
9.8