Vulnerabilities > Access of Resource Using Incompatible Type ('Type Confusion')
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-08-07 | CVE-2019-14537 | Type Confusion vulnerability in Yourls YOURLS through 1.7.3 is affected by a type juggling vulnerability in the api component that can result in login bypass. | 9.8 |
2019-08-05 | CVE-2019-10980 | Type Confusion vulnerability in Laquisscada Scada 4.3.1.71 A type confusion vulnerability may be exploited when LAquis SCADA 4.3.1.71 processes a specially crafted project file. | 7.8 |
2019-07-23 | CVE-2019-9819 | Type Confusion vulnerability in Mozilla Thunderbird A vulnerability where a JavaScript compartment mismatch can occur while working with the fetch API, resulting in a potentially exploitable crash. | 9.8 |
2019-07-23 | CVE-2019-9816 | Type Confusion vulnerability in Mozilla Thunderbird A possible vulnerability exists where type confusion can occur when manipulating JavaScript objects in object groups, allowing for the bypassing of security checks within these groups. | 5.9 |
2019-07-23 | CVE-2019-11707 | Type Confusion vulnerability in Mozilla Thunderbird A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. | 8.8 |
2019-07-23 | CVE-2019-11706 | Type Confusion vulnerability in Mozilla Thunderbird A flaw in Thunderbird's implementation of iCal causes a type confusion in icaltimezone_get_vtimezone_properties when processing certain email messages, resulting in a crash. | 7.5 |
2019-07-01 | CVE-2019-13118 | Type Confusion vulnerability in multiple products In numbers.c in libxslt 1.1.33, a type holding grouping characters of an xsl:number instruction was too narrow and an invalid character/length combination could be passed to xsltNumberFormatDecimal, leading to a read of uninitialized stack data. | 5.3 |
2019-06-12 | CVE-2019-0988 | Type Confusion vulnerability in Microsoft Internet Explorer 10/11 A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. | 7.5 |
2019-06-12 | CVE-2019-0920 | Type Confusion vulnerability in Microsoft Internet Explorer 10/11/9 A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'Scripting Engine Memory Corruption Vulnerability'. | 7.5 |
2019-06-07 | CVE-2019-2097 | Type Confusion vulnerability in Google Android In HAliasAnalyzer.Query of hydrogen-alias-analysis.h, there is possible memory corruption due to type confusion. | 9.8 |