CWE-704 · 197 records
Incorrect Type Conversion or Cast
CVEs in this class
197 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
54Plan | CVE-2025-41646Proof of concept | RevPi Webstatus application is vulnerable to an authentication bypasskunbus · revpi status · CWE-704 | Critical9.8 | — | 51.5% | Jun 6, 2025 |
43Plan | CVE-2017-5115No exploit | Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Windows allowed a remote attacker to potentially exploit object corruption vgoogle · chrome · CWE-704 | High8.8 | — | 26.3% | Oct 27, 2017 |
43Plan | CVE-2018-15981No exploit | Flash Player versions 31.0.0.148 and earlier have a type confusion vulnerability.adobe · flash player desktop runtime · CWE-704 | Critical9.8 | — | 11.7% | Nov 29, 2018 |
42Plan | CVE-2017-3106Proof of concept | Adobe Flash Player versions 26.0.0.137 and earlier have an exploitable type confusion vulnerability when parsing SWF files.adobe · flash player desktop runtime · CWE-704 | High8.8 | — | 22.3% | Aug 11, 2017 |
42Plan | CVE-2018-4944No exploit | Adobe Flash Player versions 29.0.0.140 and earlier have an exploitable type confusion vulnerability.adobe · flash player · CWE-704 | Critical9.8 | — | 8.6% | May 19, 2018 |
42Plan | CVE-2018-12812No exploit | Adobe Acrobat and Reader 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier versions have a Type Confusiadobe · acrobat dc · CWE-704 | Critical9.8 | — | 8.6% | Jul 20, 2018 |
42Plan | CVE-2015-3120No exploit | Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIRadobe · flash player · CWE-704 | Critical10.0 | — | 7.4% | Jul 9, 2015 |
41Plan | CVE-2018-3843No exploit | An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotatifoxitsoftware · foxit reader · CWE-704 | High8.8 | — | 21.6% | Apr 19, 2018 |
41Plan | CVE-2021-28918Proof of concept | Improper input validation of octal strings in netmask npm package v1.0.6 and below allows unauthenticated remote attackers to perform indetenetmask project · netmask · CWE-704 | Critical9.1 | — | 16.7% | Apr 1, 2021 |
41Plan | CVE-2016-7398No exploit | A type confusion vulnerability in the merge_param() function of php_http_params.c in PHP's pecl-http extension 3.1.0beta2 (PHP 7) and earliephp · ext-http · CWE-704 | Critical9.8 | — | 6.8% | Sep 6, 2019 |
41Plan | CVE-2016-7979No exploit | Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code bartifex · ghostscript · CWE-704 | Critical9.8 | — | 6.4% | May 23, 2017 |
40Plan | CVE-2018-5007No exploit | Adobe Flash Player 30.0.0.113 and earlier versions have a Type Confusion vulnerability.adobe · flash player desktop runtime · CWE-704 | High8.8 | — | 17.8% | Jul 20, 2018 |
40Plan | CVE-2018-12794No exploit | Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have a Type Confusiadobe · acrobat dc · CWE-704 | High8.8 | — | 15.7% | Jul 20, 2018 |
40Plan | CVE-2026-15826Proof of concept | User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusion to Administrator Account Takeover via 'username' Parametercozmoslabs · user profile builder – beautiful user registration forms, user profiles & user role editor · CWE-704 | Critical9.8 | — | 3.9% | Aug 15, 2026 |
40Plan | CVE-2018-14403No exploit | MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for assotechsmith · mp4v2 · CWE-704 | Critical9.8 | — | 2.6% | Jul 19, 2018 |
40Plan | CVE-2021-33318No exploit | An Input Validation Vulnerability exists in Joel Christner .NET C# packages WatsonWebserver, IpMatcher 1.0.4.1 and below (IpMatcher) and 4.1ipmatcher project · ipmatcher · CWE-704 | Critical9.8 | — | 2.0% | May 16, 2022 |
40Plan | CVE-2017-9183No exploit | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:309:7.autotrace project · autotrace · CWE-704 | Critical9.8 | — | 1.9% | May 23, 2017 |
39Monitor | CVE-2020-6151No exploit | A memory corruption vulnerability exists in the TIFF handle_COMPRESSION_PACKBITS functionality of Accusoft ImageGear 19.7.accusoft · imagegear · CWE-704 | Critical9.8 | — | 1.6% | Sep 1, 2020 |
39Monitor | CVE-2020-25576No exploit | An issue was discovered in the rand_core crate before 0.4.2 for Rust.rust-random · rand · CWE-704 | Critical9.8 | — | 1.6% | Sep 14, 2020 |
39Monitor | CVE-2011-1460No exploit | WebKit in Google Chrome before Blink M11 contains a bad cast to RenderBlock when anonymous blocks are renderblocks.google · blink · CWE-704 | Critical9.8 | — | 0.9% | Nov 5, 2019 |
39Monitor | CVE-2011-2337No exploit | A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.google · blink · CWE-704 | Critical9.8 | — | 0.8% | Nov 7, 2019 |
39Monitor | CVE-2025-41648No exploit | Pilz: Authentication Bypass in IndustrialPI Webstatuspilz · industrialpi 4 with industrialpi webstatus · CWE-704 | Critical9.8 | — | 0.8% | Jul 1, 2025 |
39Monitor | CVE-2023-6249No exploit | ipm: signed to unsigned conversion problem in esp32_ipm_sendzephyrproject · zephyr · CWE-704 | Critical9.8 | — | 0.4% | Feb 18, 2024 |
39Monitor | CVE-2026-58822No exploit | In multiple functions of ftsmooth.c, there is a possible memory safety issue due to improper casting.google · android · CWE-704 | Critical9.8 | — | 0.4% | Sep 8, 2026 |
38Monitor | CVE-2018-4953No exploit | Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Type Confusiadobe · acrobat dc · CWE-704 | High8.8 | — | 9.3% | Jul 9, 2018 |
- CVE-2025-4164654Plan
RevPi Webstatus application is vulnerable to an authentication bypass
CriticalCVSS 9.8Proof of conceptEPSS 52%kunbus · revpi statusJun 6, 2025
- CVE-2017-511543Plan
Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Windows allowed a remote attacker to potentially exploit object corruption v
HighCVSS 8.8No exploitEPSS 26%google · chromeOct 27, 2017
- CVE-2018-1598143Plan
Flash Player versions 31.0.0.148 and earlier have a type confusion vulnerability.
CriticalCVSS 9.8No exploitEPSS 12%adobe · flash player desktop runtimeNov 29, 2018
- CVE-2017-310642Plan
Adobe Flash Player versions 26.0.0.137 and earlier have an exploitable type confusion vulnerability when parsing SWF files.
HighCVSS 8.8Proof of conceptEPSS 22%adobe · flash player desktop runtimeAug 11, 2017
- CVE-2018-494442Plan
Adobe Flash Player versions 29.0.0.140 and earlier have an exploitable type confusion vulnerability.
CriticalCVSS 9.8No exploitEPSS 9%adobe · flash playerMay 19, 2018
- CVE-2018-1281242Plan
Adobe Acrobat and Reader 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier versions have a Type Confusi
CriticalCVSS 9.8No exploitEPSS 9%adobe · acrobat dcJul 20, 2018
- CVE-2015-312042Plan
Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR
CriticalCVSS 10.0No exploitEPSS 7%adobe · flash playerJul 9, 2015
- CVE-2018-384341Plan
An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotati
HighCVSS 8.8No exploitEPSS 22%foxitsoftware · foxit readerApr 19, 2018
- CVE-2021-2891841Plan
Improper input validation of octal strings in netmask npm package v1.0.6 and below allows unauthenticated remote attackers to perform indete
CriticalCVSS 9.1Proof of conceptEPSS 17%netmask project · netmaskApr 1, 2021
- CVE-2016-739841Plan
A type confusion vulnerability in the merge_param() function of php_http_params.c in PHP's pecl-http extension 3.1.0beta2 (PHP 7) and earlie
CriticalCVSS 9.8No exploitEPSS 7%php · ext-httpSep 6, 2019
- CVE-2016-797941Plan
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code b
CriticalCVSS 9.8No exploitEPSS 6%artifex · ghostscriptMay 23, 2017
- CVE-2018-500740Plan
Adobe Flash Player 30.0.0.113 and earlier versions have a Type Confusion vulnerability.
HighCVSS 8.8No exploitEPSS 18%adobe · flash player desktop runtimeJul 20, 2018
- CVE-2018-1279440Plan
Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have a Type Confusi
HighCVSS 8.8No exploitEPSS 16%adobe · acrobat dcJul 20, 2018
- CVE-2026-1582640Plan
User Profile Builder <= 3.16.4 - Unauthenticated Authentication Bypass via Type Confusion to Administrator Account Takeover via 'username' Parameter
CriticalCVSS 9.8Proof of conceptEPSS 4%cozmoslabs · user profile builder – beautiful user registration forms, user profiles & user role editorAug 15, 2026
- CVE-2018-1440340Plan
MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for asso
CriticalCVSS 9.8No exploitEPSS 3%techsmith · mp4v2Jul 19, 2018
- CVE-2021-3331840Plan
An Input Validation Vulnerability exists in Joel Christner .NET C# packages WatsonWebserver, IpMatcher 1.0.4.1 and below (IpMatcher) and 4.1
CriticalCVSS 9.8No exploitEPSS 2%ipmatcher project · ipmatcherMay 16, 2022
- CVE-2017-918340Plan
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:309:7.
CriticalCVSS 9.8No exploitEPSS 2%autotrace project · autotraceMay 23, 2017
- CVE-2020-615139Monitor
A memory corruption vulnerability exists in the TIFF handle_COMPRESSION_PACKBITS functionality of Accusoft ImageGear 19.7.
CriticalCVSS 9.8No exploitEPSS 2%accusoft · imagegearSep 1, 2020
- CVE-2020-2557639Monitor
An issue was discovered in the rand_core crate before 0.4.2 for Rust.
CriticalCVSS 9.8No exploitEPSS 2%rust-random · randSep 14, 2020
- CVE-2011-146039Monitor
WebKit in Google Chrome before Blink M11 contains a bad cast to RenderBlock when anonymous blocks are renderblocks.
CriticalCVSS 9.8No exploitEPSS 1%google · blinkNov 5, 2019
- CVE-2011-233739Monitor
A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.
CriticalCVSS 9.8No exploitEPSS 1%google · blinkNov 7, 2019
- CVE-2025-4164839Monitor
Pilz: Authentication Bypass in IndustrialPI Webstatus
CriticalCVSS 9.8No exploitEPSS 1%pilz · industrialpi 4 with industrialpi webstatusJul 1, 2025
- CVE-2023-624939Monitor
ipm: signed to unsigned conversion problem in esp32_ipm_send
CriticalCVSS 9.8No exploitEPSS 0%zephyrproject · zephyrFeb 18, 2024
- CVE-2026-5882239Monitor
In multiple functions of ftsmooth.c, there is a possible memory safety issue due to improper casting.
CriticalCVSS 9.8No exploitEPSS 0%google · androidSep 8, 2026
- CVE-2018-495338Monitor
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Type Confusi
HighCVSS 8.8No exploitEPSS 9%adobe · acrobat dcJul 9, 2018