CWE-704
Incorrect Type Conversion or Cast
The product does not correctly convert an object, resource, or structure from one type to a different type.
268 vulnerabilities with CWE-704
CVE-2025-41648
CRITICAL
Pilz IndustrialPI 4 with IndustrialPI webstatus < 2.4.6 - Unauthenticated Authentication Bypass
CVSS 9.8
CVE-2025-41646
CRITICAL
revpi_status < 2.4.6 - Unauthenticated Authentication Bypass via Incorrect Type Conversion
CVSS 9.8
CVE-2025-37746
MEDIUM
Linux Kernel 6.8-6.14.3 - Use-After-Free via Duplicate PCI Device Registration
CVSS 5.5
CVE-2025-22044
MEDIUM
Linux Kernel 5.9-6.14.2 - Incorrect Type Conversion in acpi_nfit_ctl
CVSS 5.5
CVE-2025-1057
MEDIUM
Keylime 7.12.0 - Denial of Service via Agent Registration Type Mismatch
CVSS 4.3
CVE-2025-20072
MEDIUM
Mattermost Mobile <=2.22.0 - Code Injection
CVSS 6.5
CVE-2025-21088
MEDIUM
Mattermost <10.2.0-10.1.3 - Code Injection
CVSS 6.5
CVE-2024-43058
HIGH
Qualcomm FastConnect and Snapdragon Firmware - Memory Corruption via IOCTL
CVSS 7.8
CVE-2024-57839
MEDIUM
Linux Kernel 6.11-6.12.4 - Denial of Service via Readahead Size Miscount
CVSS 5.5
CVE-2024-47181
HIGH
Contiki-NG < 4.9 - Denial of Service via Unaligned Memory Access in RPL Implementation
CVSS 7.5
CVE-2024-39590
HIGH
OpenPLC_v3 - Denial of Service via EtherNet/IP Protected_Logical_Write_Reply Function
CVSS 7.5
CVE-2024-39589
HIGH
OpenPLC_v3 16bf8bac - DoS via EtherNet/IP Protected_Logical_Read_Reply
CVSS 7.5
CVE-2024-26015
LOW
FortiProxy <7.4.3 - Unauthenticated Bypass
CVSS 3.4
CVE-2024-32893
MEDIUM
Android - Out-of-bounds Read in exynos_dvfs.c _s5e9865_mif_set_rate
CVSS 5.5
CVE-2024-35303
HIGH
Tecnomatix Plant Simulation <V2302.0012, V2404.0001 - RCE
CVSS 7.8
CVE-2024-36735
MEDIUM
OneFlow-Inc. Oneflow <0.9.1 - Info Disclosure
CVSS 5.3
CVE-2024-21478
MEDIUM
Qualcomm Qam8255p Firmware - Denial of Service
CVSS 6.2
CVE-2024-5436
CRITICAL
Snapchat LensCore < 12.88 - Type Confusion
CVSS 9.8
CVE-2024-28130
HIGH
OFFIS DCMTK 3.6.8 - Remote Code Execution via DVPSSoftcopyVOI_PList Type Conversion
CVSS 7.5
CVE-2024-2606
LOW
Firefox < 124.0 - Incorrect Type Conversion in WebAssembly
CVSS 3.7
CVE-2023-7345
MEDIUM
Ledger Live hw-app-eth EIP-712 Message Parsing Integer Truncation
CVSS 6.5
CVE-2023-35816
LOW
DevExpress <23.1.3 - Code Injection
CVSS 3.5
CVE-2023-33101
HIGH
Qualcomm 315 5G IoT Modem Firmware - Denial of Service via DL NAS TRANSPORT Message
CVSS 7.5
CVE-2023-6249
HIGH
Zephyr - Incorrect Type Conversion in ESP32 IPM Send
CVSS 8.0
CVE-2023-45204
HIGH
Tecnomatix Plant Simulation <V2201.0009-V2302.0003 - Code Injection
CVSS 7.8
Details
Vulnerabilities
268