CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

Parent: CWE-704 - Incorrect Type Conversion or Cast

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

847 vulnerabilities with CWE-843
CVE-2026-50421 HIGH
Windows Connected User Experiences and Telemetry Elevation of Privilege Vulnerability
CVSS 7.8
CVE-2026-50390 HIGH
Microsoft Windows 10 Version 1607 - Windows Kernel Elevation of Privilege Vulnerability
CVSS 7.0
CVE-2026-50381 MEDIUM
Composite Image File System driver (cimfs.sys) Information Disclosure Vulnerability
CVSS 5.5
CVE-2026-55771 HIGH
CedarJava has policy injection, type confusion, and incorrect equality comparison vulnerabilities
CVSS 8.8
CVE-2026-55772 HIGH
CedarJava - Record-to-Entity Type Confusion
CVSS 8.8
CVE-2026-58305 MEDIUM
Samsung Open Source Escargot - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 6.1
CVE-2026-57254 HIGH
Foxit PDF Editor/Reader Annotation Type Confusion Vulnerability
CVSS 7.8
CVE-2026-59152 MEDIUM
Arbitrary server-side file read in LangSmith SDK TracingMiddleware
CVSS 5.0
CVE-2026-58295 HIGH
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
CVSS 8.3
CVE-2026-58290 HIGH
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVSS 7.5
CVE-2026-58289 CRITICAL
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVSS 9.0
CVE-2026-58285 HIGH
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVSS 8.3
CVE-2026-58283 HIGH
Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVSS 8.1
CVE-2026-57975 HIGH
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVSS 7.5
CVE-2026-14431 HIGH
Google Chrome - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 8.8
CVE-2026-14423 CRITICAL
Google Chrome - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 9.6
CVE-2026-58592 HIGH
Ladybird - Web-Reachable Code Execution via Dangling FunctionType Reference in WebAssembly ESM Integration
CVSS 8.3
CVE-2026-54164 MEDIUM
API Platform Core: Missing IRI type check enables resource type confusion
CVSS 6.5
CVE-2026-14148 MEDIUM
Google Chrome - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 6.5
CVE-2026-14119 MEDIUM
Google Chrome - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 6.5
CVE-2026-13967 HIGH
Google Chrome - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 8.8
CVE-2026-13883 CRITICAL
Google Chrome - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 9.6
CVE-2026-13803 HIGH
Google Chrome - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 8.3
CVE-2026-13776 CRITICAL
Google Chrome - Access of Resource Using Incompatible Type ('Type Confusion')
CVSS 9.8
CVE-2026-44628 HIGH
OFFIS DCMTK Toolkit Type Confusion
CVSS 7.5
Details
Vulnerabilities 847