Vulnerabilities > Access of Resource Using Incompatible Type ('Type Confusion')

DATE CVE VULNERABILITY TITLE RISK
2023-02-27 CVE-2023-23529 Type Confusion vulnerability in Apple products
A type confusion issue was addressed with improved checks.
network
low complexity
apple CWE-843
8.8
2023-02-16 CVE-2023-22579 Type Confusion vulnerability in Sequelizejs Sequelize 7.0.0
Due to improper parameter filtering in the sequalize js library, can a attacker peform injection.
network
low complexity
sequelizejs CWE-843
8.8
2023-02-08 CVE-2023-0286 Type Confusion vulnerability in multiple products
There is a type confusion vulnerability relating to X.400 address processing inside an X.509 GeneralName.
network
high complexity
openssl stormshield CWE-843
7.4
2023-02-07 CVE-2023-0696 Type Confusion vulnerability in Google Chrome
Type confusion in V8 in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2023-02-07 CVE-2023-0702 Type Confusion vulnerability in Google Chrome
Type confusion in Data Transfer in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2023-02-07 CVE-2023-0703 Type Confusion vulnerability in Google Chrome
Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via UI interactions.
network
low complexity
google CWE-843
8.8
2023-02-06 CVE-2023-20616 Type Confusion vulnerability in Google Android 11.0/12.0
In ion, there is a possible out of bounds read due to type confusion.
local
low complexity
google CWE-843
6.7
2023-01-30 CVE-2023-0473 Type Confusion vulnerability in Google Chrome
Type Confusion in ServiceWorker API in Google Chrome prior to 109.0.5414.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-843
8.8
2023-01-27 CVE-2022-4205 Type Confusion vulnerability in Gitlab
In Gitlab EE/CE before 15.6.1, 15.5.5 and 15.4.6 using a branch with a hexadecimal name could override an existing hash.
network
low complexity
gitlab CWE-843
7.5
2023-01-26 CVE-2022-20461 Type Confusion vulnerability in Google Android
In pinReplyNative of com_android_bluetooth_btservice_AdapterService.cpp, there is a possible out of bounds read due to type confusion.
local
low complexity
google CWE-843
7.8