Vulnerabilities > Incorrect Type Conversion or Cast

DATE CVE VULNERABILITY TITLE RISK
2025-06-06 CVE-2025-41646 An unauthorized remote attacker can bypass the authentication of the affected software package by misusing an incorrect type conversion.
network
low complexity
CWE-704
critical
9.8
2025-05-01 CVE-2022-49873 Incorrect Type Conversion or Cast vulnerability in Linux Kernel
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix wrong reg type conversion in release_reference() Some helper functions will allocate memory.
local
low complexity
linux CWE-704
5.5
2025-04-28 CVE-2023-35816 Incorrect Type Conversion or Cast vulnerability in Devexpress
DevExpress before 23.1.3 allows arbitrary TypeConverter conversion.
network
low complexity
devexpress CWE-704
5.3
2025-04-07 CVE-2024-43058 Memory corruption while processing IOCTL calls.
local
low complexity
CWE-704
7.8
2025-03-15 CVE-2025-1057 A flaw was found in Keylime, a remote attestation solution, where strict type checking introduced in version 7.12.0 prevents the registrar from reading database entries created by previous versions, for example, 7.11.0.
network
low complexity
CWE-704
4.3
2024-09-18 CVE-2024-39589 Incorrect Type Conversion or Cast vulnerability in Openplcproject Openplc V3 Firmware 20240528
Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC_v3 16bf8bac1a36d95b73e7b8722d0edb8b9c5bb56a.
network
low complexity
openplcproject CWE-704
7.5
2024-09-18 CVE-2024-39590 Incorrect Type Conversion or Cast vulnerability in Openplcproject Openplc V3 Firmware 20240528
Multiple invalid pointer dereference vulnerabilities exist in the OpenPLC Runtime EtherNet/IP parser functionality of OpenPLC_v3 16bf8bac1a36d95b73e7b8722d0edb8b9c5bb56a.
network
low complexity
openplcproject CWE-704
7.5
2024-07-09 CVE-2024-26015 Incorrect Type Conversion or Cast vulnerability in Fortinet Fortios and Fortiproxy
An incorrect parsing of numbers with different radices vulnerability [CWE-1389] in FortiProxy version 7.4.3 and below, version 7.2.10 and below, version 7.0.17 and below and FortiOS version 7.4.3 and below, version 7.2.8 and below, version 7.0.15 and below IP address validation feature may permit an unauthenticated attacker to bypass the IP blocklist via crafted requests.
low complexity
fortinet CWE-704
4.7
2024-06-13 CVE-2024-32893 Incorrect Type Conversion or Cast vulnerability in Google Android
In _s5e9865_mif_set_rate of exynos_dvfs.c, there is a possible out of bounds read due to improper casting.
local
low complexity
google CWE-704
5.5
2024-02-18 CVE-2023-6249 Incorrect Type Conversion or Cast vulnerability in Zephyrproject Zephyr
Signed to unsigned conversion esp32_ipm_send
network
low complexity
zephyrproject CWE-704
critical
9.8