CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')

Parent: CWE-704 - Incorrect Type Conversion or Cast

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

847 vulnerabilities with CWE-843
CVE-2025-64314 CRITICAL
HarmonyOS - Permission Control Vulnerability in Memory Management Module
CVSS 9.3
CVE-2025-58310 HIGH
Distributed Component - Info Disclosure
CVSS 8.0
CVE-2025-13230 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8
CVSS 8.8
CVE-2025-13229 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13228 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13227 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13226 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13224 HIGH
Google Chrome < 142.0.7444.175 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-13223 HIGH KEV
Google Chrome < 142.0.7444.175 - Type Confusion in V8 via Crafted HTML Page
CVSS 8.8
CVE-2025-12428 HIGH
Google Chrome < 142.0.7444.59 - Type Confusion in V8
CVSS 8.8
CVE-2025-47151 CRITICAL
Entr'ouvert Lasso 2.5.1 and 2.8.2 - Remote Code Execution via SAML Response Type Confusion
CVSS 9.8
CVE-2025-62518 HIGH
astral-tokio-tar < 0.5.6 - Archive Entry Smuggling via PAX Header Size Mismatch
CVSS 8.1
CVE-2025-59233 HIGH
Microsoft Excel - Remote Code Execution via Type Confusion
CVSS 7.8
CVE-2025-59231 HIGH
Microsoft Excel - Remote Code Execution via Type Confusion
CVSS 7.8
CVE-2025-11731 LOW
Red Hat Enterprise Linux 10 - Denial of Service via libxslt exsltFuncResultComp Type Confusion
CVSS 3.1
CVE-2025-61911 MEDIUM
python-ldap <3.4.5 - Code Injection
CVSS 6.5
CVE-2025-10585 CRITICAL KEV
Google Chrome < 140.0.7339.185 - Type Confusion in V8 via Crafted HTML Page
CVSS 9.8
CVE-2025-8354 HIGH
Autodesk Revit 2026-2026.3 - Type Confusion via Malicious RFA File
CVSS 7.8
CVE-2025-59717 MEDIUM
@digitalocean/do-markdownit < 1.16.1 - Type Confusion in Callout and Fence Environment Plugins
CVSS 5.4
CVE-2025-8005 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via XE File Parsing Type Confusion
CVSS 7.8
CVE-2025-8002 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via CO File Parsing Type Confusion
CVSS 7.8
CVE-2025-8000 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via LI File Parsing Type Confusion
CVSS 7.8
CVE-2025-7999 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via AR File Parsing Type Confusion
CVSS 7.8
CVE-2025-7995 HIGH
Ashlar-Vellum Cobalt - Remote Code Execution via CO File Parsing Type Confusion
CVSS 7.8
CVE-2025-43355 MEDIUM
tvOS 26-watchOS 26-macOS Sonoma 14.8-iOS 26-iPadOS 26-macOS Sequoia...
CVSS 5.5
Details
Vulnerabilities 847