CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

Parent: CWE-704 - Incorrect Type Conversion or Cast

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

788 vulnerabilities with CWE-843
CVE-2025-43236 LOW
macOS < 13.7.7, < 14.7.7, < 15.6 - Denial of Service via Type Confusion
CVSS 3.3
CVE-2025-66342 HIGH
Canva Affinity <3.1.0 - Memory Corruption
CVSS 7.8
CVE-2025-25277 MEDIUM
OpenHarmony <=5.1.0 arkcompiler_ets_runtime - Type Confusion Code Execution
CVSS 6.3
CVE-2025-14799 MEDIUM
Brevo WordPress Plugin <=3.3.0 - Auth Bypass
CVSS 6.5
CVE-2025-29867 HIGH
Hancom Office <10.0.0.12681, <11.0.0.8916, <12.0.0.4426, <13.0.0.30...
CVE-2025-65080 MEDIUM
Lexmark Printer PostScript Interpreter - Type Confusion Code Execution
CVE-2025-12899 MEDIUM
Zephyr < 4.2 - Information Leak via ICMPv4 Type 128 Misclassification
CVSS 6.5
CVE-2025-65570 CRITICAL
jsish 2.0 - Type Confusion via OP_NEXT Opcode Handling
CVSS 9.8
CVE-2025-43541 MEDIUM
Safari < 26.2 - Type Confusion via Malicious Web Content
CVSS 4.3
CVE-2025-43506 HIGH
macOS < 26.1 - iCloud Private Relay Activation Bypass via Multi-User Session
CVSS 7.5
CVE-2025-66586 HIGH
AzeoTech DAQFactory <20.7 - Memory Corruption
CVSS 7.8
CVE-2025-62554 HIGH
Microsoft 365 Apps and Office - Remote Code Execution via Type Confusion
CVSS 8.4
CVE-2025-14330 CRITICAL
Firefox < 146.0 and 140.6-140.* - Memory Corruption in JIT Component
CVSS 9.8
CVE-2025-14325 HIGH
Firefox < 146.0 and 140.6-140.* - Type Confusion in JIT JavaScript Engine
CVSS 7.3
CVE-2025-13630 HIGH
Google Chrome < 143.0.7499.40 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-41738 HIGH
CODESYS Control SL 4.5.0-4.18.9 - Unauthenticated Denial of Service via Type Confusion
CVSS 7.5
CVE-2025-64314 CRITICAL
HarmonyOS - Permission Control Vulnerability in Memory Management Module
CVSS 9.3
CVE-2025-58310 HIGH
Distributed Component - Info Disclosure
CVSS 8.0
CVE-2025-13230 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8
CVSS 8.8
CVE-2025-13229 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13228 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13227 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13226 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13224 HIGH
Google Chrome < 142.0.7444.175 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13223 HIGH KEV
Google Chrome < 142.0.7444.175 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
Details
Vulnerabilities 788