Vulnerabilities > Access of Resource Using Incompatible Type ('Type Confusion')

DATE CVE VULNERABILITY TITLE RISK
2019-04-26 CVE-2019-9813 Type Confusion vulnerability in Mozilla Thunderbird
Incorrect handling of __proto__ mutations may lead to type confusion in IonMonkey JIT code and can be leveraged for arbitrary memory read and write.
network
low complexity
mozilla CWE-843
8.8
2019-04-26 CVE-2019-9795 Type Confusion vulnerability in Mozilla Firefox
A vulnerability where type-confusion in the IonMonkey just-in-time (JIT) compiler could potentially be used by malicious JavaScript to trigger a potentially exploitable crash.
network
low complexity
mozilla CWE-843
critical
9.8
2019-04-26 CVE-2019-9791 Type Confusion vulnerability in multiple products
The type inference system allows the compilation of functions that can cause type confusions between arbitrary objects when compiled through the IonMonkey just-in-time (JIT) compiler and when the constructor function is entered through on-stack replacement (OSR).
network
low complexity
mozilla redhat CWE-843
critical
9.8
2019-04-09 CVE-2019-0810 Type Confusion vulnerability in Microsoft Chakracore and Edge
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'.
network
high complexity
microsoft CWE-843
7.5
2019-04-09 CVE-2019-0752 Type Confusion vulnerability in Microsoft Internet Explorer 10/11
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'.
network
high complexity
microsoft CWE-843
7.5
2019-03-27 CVE-2019-10231 Type Confusion vulnerability in Teclib-Edition Gestionnaire Libre DE Parc Informatique
Teclib GLPI before 9.4.1.1 is affected by a PHP type juggling vulnerability allowing bypass of authentication.
network
low complexity
teclib-edition CWE-843
critical
9.8
2019-03-05 CVE-2019-6215 Type Confusion vulnerability in multiple products
A type confusion issue was addressed with improved memory handling.
network
low complexity
apple canonical CWE-843
8.8
2019-03-05 CVE-2019-6214 Type Confusion vulnerability in Apple products
A type confusion issue was addressed with improved memory handling.
local
low complexity
apple CWE-843
8.6
2019-01-28 CVE-2019-6984 Type Confusion vulnerability in Foxitsoftware 3D 9.1.0.425/9.2.0.9182/9.3.0.10830
An issue was discovered in Foxit 3D Plugin Beta before 9.4.0.16807 for Foxit Reader and PhantomPDF.
network
low complexity
foxitsoftware CWE-843
6.5
2018-08-15 CVE-2018-8384 Type Confusion vulnerability in Microsoft Chakracore
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore.
network
high complexity
microsoft CWE-843
7.5