Skip to content
Noroxi

CWE-351 · 14 records

Insufficient Type Distinction

CVEs in this class

14 records

  • Growatt Cloud portal Insufficient Type Distinction

    CriticalCVSS 9.3No exploitEPSS 0%

    growatt · cloud portalApr 15, 2025

  • skops' MethodNode can access unexpected object fields through dot notation, leading to arbitrary code execution at load time

    HighCVSS 8.7No exploitEPSS 0%

    skops-dev · skopsJul 26, 2025

  • skops' Inconsistent Trusted Type Validation Enables Hidden `operator` Methods Execution

    HighCVSS 8.7No exploitEPSS 0%

    skops-dev · skopsJul 26, 2025

  • CVE-2023-2866
    31Monitor

    Advantech WebAccess Insufficient Type Distinction

    HighCVSS 7.8No exploitEPSS 0%

    advantech · webaccessJun 7, 2023

  • DNN does not check the contents of a file when uploading files

    HighCVSS 7.5No exploitEPSS 0%

    dnnsoftware · dotnetnukeApr 8, 2025

  • Contao is vulnerable to remote code execution in template closures

    MediumCVSS 6.6No exploitEPSS 0%

    contao · contaoNov 25, 2025

  • Bluetooth devices supporting LE and specific BR/EDR implementations are vulnerable to method confusion attacks

    MediumCVSS 6.3No exploitEPSS 1%

    bluetooth · bluetooth coreMay 19, 2020

  • TYPO3 CMS - Unrestricted File Upload in Form Framework

    MediumCVSS 6.3No exploitEPSS 0%

    typo3 · typo3 cmsJul 14, 2026

  • CVE-2024-4769
    23Monitor

    When importing resources using Web Workers, error messages would distinguish the difference between `application/javascript` responses and n

    MediumCVSS 5.9No exploitEPSS 0%

    mozilla · firefoxMay 14, 2024

  • Duplicate Advisory: TYPO3-CORE-SA-2026-020: TYPO3 CMS - Unrestricted File Upload in Form Framework

    MediumCVSS 5.5No exploit

    Packagist · typo3/cms-formJul 14, 2026

  • TYPO3 CMS Vulnerable to Unrestricted File Upload in File Abstraction Layer

    MediumCVSS 5.4No exploitEPSS 0%

    typo3 · typo3May 20, 2025

  • Duplicate Advisory: OpenClaw: Discord Component Interaction Misclassifies Group DM as Direct Message

    MediumCVSS 5.4No exploit

    npm · openclawApr 24, 2026

  • IBM Cognos Controller file upload

    MediumCVSS 4.3No exploitEPSS 0%

    ibm · cognos controllerDec 3, 2024

  • OpenClaw < 2026.3.31 - Component Interaction Misclassification in Discord Extension

    LowCVSS 2.3No exploitEPSS 0%

    openclaw · openclawApr 23, 2026

All vulnerability classes