CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

Parent: CWE-704 - Incorrect Type Conversion or Cast

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

788 vulnerabilities with CWE-843
CVE-2025-12428 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8
CVSS 8.8
CVE-2025-47151 CRITICAL
Entr'ouvert Lasso 2.5.1 and 2.8.2 - Remote Code Execution via SAML Response Type Confusion
CVSS 9.8
CVE-2025-62518 HIGH
astral-tokio-tar < 0.5.6 - Archive Entry Smuggling via PAX Header Size Mismatch
CVSS 8.1
CVE-2025-59233 HIGH
Microsoft Excel - Remote Code Execution via Type Confusion
CVSS 7.8
CVE-2025-59231 HIGH
Microsoft Excel - Remote Code Execution via Type Confusion
CVSS 7.8
CVE-2025-11731 LOW
Red Hat Enterprise Linux 10 - Denial of Service via libxslt exsltFuncResultComp Type Confusion
CVSS 3.1
CVE-2025-61911 MEDIUM
python-ldap <3.4.5 - Code Injection
CVSS 6.5
CVE-2025-10585 CRITICAL KEV
Google Chrome < 140.0.7339.185 - Type Confusion in V8 via Crafted HTML Page
CVSS 9.8
CVE-2025-8354 HIGH
Autodesk Revit 2026-2026.3 - Type Confusion via Malicious RFA File
CVSS 7.8
CVE-2025-59717 MEDIUM
@digitalocean/do-markdownit < 1.16.1 - Type Confusion in Callout and Fence Environment Plugins
CVSS 5.4
CVE-2025-8005 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via XE File Parsing Type Confusion
CVSS 7.8
CVE-2025-8002 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via CO File Parsing Type Confusion
CVSS 7.8
CVE-2025-8000 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via LI File Parsing Type Confusion
CVSS 7.8
CVE-2025-7999 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via AR File Parsing Type Confusion
CVSS 7.8
CVE-2025-7995 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via CO File Parsing Type Confusion
CVSS 7.8
CVE-2025-43355 MEDIUM
tvOS 26-watchOS 26-macOS Sonoma 14.8-iOS 26-iPadOS 26-macOS Sequoia...
CVSS 5.5
CVE-2025-43297 MEDIUM
macOS < 26.0 - Denial of Service via Type Confusion
CVSS 6.2
CVE-2025-55236 HIGH
Windows 10/11, Server 2019/2022/2025 - Local Code Execution via Graphics Kernel TOCTOU
CVSS 7.3
CVE-2025-54915 MEDIUM
Windows Defender Firewall Service - Authenticated Privilege Escalation via Type Confusion
CVSS 6.7
CVE-2025-54109 MEDIUM
Windows Defender Firewall Service - Authenticated Privilege Escalation via Type Confusion
CVSS 6.7
CVE-2025-54104 MEDIUM
Windows Defender Firewall Service - Authenticated Privilege Escalation via Type Confusion
CVSS 6.7
CVE-2025-54094 MEDIUM
Windows Defender Firewall Service - Authenticated Privilege Escalation via Type Confusion
CVSS 6.7
CVE-2025-53810 MEDIUM
Windows Defender Firewall Service - Privilege Escalation
CVSS 6.7
CVE-2025-53808 MEDIUM
Windows Defender Firewall Service - Privilege Escalation
CVSS 6.7
CVE-2025-22435 CRITICAL
Android - Memory Corruption via Type Confusion in avdt_msg_ind
CVSS 9.8
Details
Vulnerabilities 788