CWE-704
Incorrect Type Conversion or Cast
The product does not correctly convert an object, resource, or structure from one type to a different type.
273 vulnerabilities with CWE-704
CVE-2025-12781
MEDIUM
Python < 3.13.10 - Incorrect Type Conversion in base64 Decode Functions
CVSS 5.3
CVE-2025-13720
HIGH
Google Chrome <143.0.7499.41 - Heap Corruption
CVSS 8.8
CVE-2025-62494
HIGH
QuickJS < 2025-09-13 - Type Confusion via String Addition Operation
CVSS 8.8
CVE-2025-39880
CRITICAL
Linux Kernel 5.11-6.16.7 Memory Corruption via ceph_connection_v1_info Union Misuse
CVSS 9.8
CVE-2025-54429
MEDIUM
Polkadot Frontier - Info Disclosure
CVE-2025-41648
CRITICAL
Pilz IndustrialPI 4 with IndustrialPI webstatus < 2.4.6 - Unauthenticated Authentication Bypass
CVSS 9.8
CVE-2025-41646
CRITICAL
revpi_status < 2.4.6 - Unauthenticated Authentication Bypass via Incorrect Type Conversion
CVSS 9.8
CVE-2025-37746
MEDIUM
Linux Kernel 6.8-6.14.3 - Use-After-Free via Duplicate PCI Device Registration
CVSS 5.5
CVE-2025-22044
HIGH
Linux Kernel 5.9-6.14.2 - Incorrect Type Conversion in acpi_nfit_ctl
CVSS 7.1
CVE-2025-1057
MEDIUM
Keylime 7.12.0 - Denial of Service via Agent Registration Type Mismatch
CVSS 4.3
CVE-2025-20072
MEDIUM
Mattermost Mobile <=2.22.0 - Code Injection
CVSS 6.5
CVE-2025-21088
MEDIUM
Mattermost <10.2.0-10.1.3 - Code Injection
CVSS 6.5
CVE-2024-43058
HIGH
Qualcomm FastConnect and Snapdragon Firmware - Memory Corruption via IOCTL
CVSS 7.8
CVE-2024-57839
MEDIUM
Linux Kernel 6.11-6.12.4 - Denial of Service via Readahead Size Miscount
CVSS 5.5
CVE-2024-47181
HIGH
Contiki-NG < 4.9 - Denial of Service via Unaligned Memory Access in RPL Implementation
CVSS 7.5
CVE-2024-39590
HIGH
OpenPLC_v3 - Denial of Service via EtherNet/IP Protected_Logical_Write_Reply Function
CVSS 7.5
CVE-2024-39589
HIGH
OpenPLC_v3 16bf8bac - DoS via EtherNet/IP Protected_Logical_Read_Reply
CVSS 7.5
CVE-2024-26015
LOW
FortiProxy <7.4.3 - Unauthenticated Bypass
CVSS 3.4
CVE-2024-32893
MEDIUM
Android - Out-of-bounds Read in exynos_dvfs.c _s5e9865_mif_set_rate
CVSS 5.5
CVE-2024-35303
HIGH
Tecnomatix Plant Simulation <V2302.0012, V2404.0001 - RCE
CVSS 7.8
CVE-2024-36735
MEDIUM
OneFlow-Inc. Oneflow <0.9.1 - Info Disclosure
CVSS 5.3
CVE-2024-21478
MEDIUM
Qualcomm Qam8255p Firmware - Denial of Service
CVSS 6.2
CVE-2024-5436
CRITICAL
Snapchat LensCore < 12.88 - Type Confusion
CVSS 9.8
CVE-2024-28130
HIGH
OFFIS DCMTK 3.6.8 - Remote Code Execution via DVPSSoftcopyVOI_PList Type Conversion
CVSS 7.5
CVE-2024-2606
LOW
Firefox < 124.0 - Incorrect Type Conversion in WebAssembly
CVSS 3.7
Details
Vulnerabilities
273