CWE-843 · 823 записей
Access of Resource Using Incompatible Type ('Type Confusion')
CVE этого класса
833 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
98Срочно | CVE-2012-0507Готовый эксплойт | Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier,oracle · jre · CWE-843 | Критическая9,8 | KEV | 98,1 % | 7 июн. 2012 г. |
95Срочно | CVE-2011-0611Готовый эксплойт | Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.adobe · flash player · CWE-843 | Высокая8,8 | KEV | 99,4 % | 13 апр. 2011 г. |
90Срочно | CVE-2017-8291Готовый эксплойт | Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile artifex · ghostscript · CWE-843 | Высокая7,8 | KEV | 97,0 % | 26 апр. 2017 г. |
90Срочно | CVE-2021-21224Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a craftgoogle · chrome · CWE-843 | Высокая8,8 | KEV | 84,2 % | 26 апр. 2021 г. |
89Срочно | CVE-2016-7201Готовый эксплойт | The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memmicrosoft · edge · CWE-843 | Высокая8,8 | KEV | 80,0 % | 10 нояб. 2016 г. |
89Срочно | CVE-2020-6418Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted google · chrome · CWE-843 | Высокая8,8 | KEV | 78,8 % | 27 февр. 2020 г. |
86Срочно | CVE-2017-0037Готовый эксплойт | Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilder::HandleColumnBreakmicrosoft · edge · CWE-843 | Высокая8,1 | KEV | 80,4 % | 26 февр. 2017 г. |
84Срочно | CVE-2019-0752Готовый эксплойт | A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripmicrosoft · internet explorer · CWE-843 | Высокая7,5 | KEV | 81,6 % | 9 апр. 2019 г. |
84Срочно | CVE-2021-30551Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted google · chrome · CWE-843 | Высокая8,8 | KEV | 64,7 % | 15 июн. 2021 г. |
82Срочно | CVE-2018-8298Готовый эксплойт | A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Enginmicrosoft · chakracore · CWE-843 | Высокая7,5 | KEV | 74,5 % | 10 июл. 2018 г. |
80Срочно | CVE-2026-85046Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crgoogle · chrome · CWE-843 | Высокая8,8 | KEV | 48,9 % | 3 сент. 2026 г. |
79На этой неделе | CVE-2019-17026Готовый эксплойт | Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion.mozilla · firefox · CWE-843 | Высокая8,8 | KEV | 46,3 % | 2 мар. 2020 г. |
77На этой неделе | CVE-2023-4762Готовый эксплойт | Type Confusion in V8 in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page.google · chrome · CWE-843 | Высокая8,8 | KEV | 41,4 % | 5 сент. 2023 г. |
77На этой неделе | CVE-2023-2033Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a craftedgoogle · chrome · CWE-843 | Высокая8,8 | KEV | 40,8 % | 14 апр. 2023 г. |
76На этой неделе | CVE-2019-11707Готовый эксплойт | A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop.mozilla · firefox · CWE-843 | Высокая8,8 | KEV | 37,7 % | 23 июл. 2019 г. |
75На этой неделе | CVE-2023-3079Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a craftedgoogle · chrome · CWE-843 | Высокая8,8 | KEV | 32,1 % | 5 июн. 2023 г. |
75На этой неделе | CVE-2017-5070Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote attagoogle · chrome · CWE-843 | Высокая8,8 | KEV | 32,1 % | 27 окт. 2017 г. |
74На этой неделе | CVE-2024-7971Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page.google · chrome · CWE-843 | Критическая9,6 | KEV | 21,1 % | 21 авг. 2024 г. |
73На этой неделе | CVE-2024-4947Готовый эксплойт | Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafgoogle · chrome · CWE-843 | Критическая9,6 | KEV | 15,2 % | 15 мая 2024 г. |
72На этой неделе | CVE-2024-38178Готовый эксплойт | Scripting Engine Memory Corruption Vulnerabilitymicrosoft · windows 10 1507 · CWE-843 | Высокая7,5 | KEV | 41,4 % | 13 авг. 2024 г. |
72На этой неделе | CVE-2022-1096Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit heap corruption via a crafted Hgoogle · chrome · CWE-843 | Высокая8,8 | KEV | 24,2 % | 22 июл. 2022 г. |
72На этой неделе | CVE-2023-32439Готовый эксплойт | A type confusion issue was addressed with improved checks.apple · safari · CWE-843 | Высокая8,8 | KEV | 24,0 % | 23 июн. 2023 г. |
71На этой неделе | CVE-2025-10585Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a craftedgoogle · chrome · CWE-843 | Критическая9,8 | KEV | 5,4 % | 24 сент. 2025 г. |
70На этой неделе | CVE-2019-8506Готовый эксплойт | A type confusion issue was addressed with improved memory handling.apple · icloud · CWE-843 | Высокая8,8 | KEV | 16,2 % | 18 дек. 2019 г. |
70На этой неделе | CVE-2022-4262Готовый эксплойт | Type confusion in V8 in Google Chrome prior to 108.0.5359.94 allowed a remote attacker to potentially exploit heap corruption via a crafted google · chrome · CWE-843 | Высокая8,8 | KEV | 16,0 % | 2 дек. 2022 г. |
- CVE-2012-050798Срочно
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier,
КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 98 %oracle · jre7 июн. 2012 г.
- CVE-2011-061195Срочно
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 99 %adobe · flash player13 апр. 2011 г.
- CVE-2017-829190Срочно
Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile
ВысокаяCVSS 7,8KEVГотовый эксплойтEPSS 97 %artifex · ghostscript26 апр. 2017 г.
- CVE-2021-2122490Срочно
Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arbitrary code inside a sandbox via a craft
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 84 %google · chrome26 апр. 2021 г.
- CVE-2016-720189Срочно
The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (mem
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 80 %microsoft · edge10 нояб. 2016 г.
- CVE-2020-641889Срочно
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 79 %google · chrome27 февр. 2020 г.
- CVE-2017-003786Срочно
Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilder::HandleColumnBreak
ВысокаяCVSS 8,1KEVГотовый эксплойтEPSS 80 %microsoft · edge26 февр. 2017 г.
- CVE-2019-075284Срочно
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scrip
ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 82 %microsoft · internet explorer9 апр. 2019 г.
- CVE-2021-3055184Срочно
Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 65 %google · chrome15 июн. 2021 г.
- CVE-2018-829882Срочно
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engin
ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 75 %microsoft · chakracore10 июл. 2018 г.
- CVE-2026-8504680Срочно
Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a cr
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 49 %google · chrome3 сент. 2026 г.
- CVE-2019-1702679На этой неделе
Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion.
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 46 %mozilla · firefox2 мар. 2020 г.
- CVE-2023-476277На этой неделе
Type Confusion in V8 in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page.
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 41 %google · chrome5 сент. 2023 г.
- CVE-2023-203377На этой неделе
Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 41 %google · chrome14 апр. 2023 г.
- CVE-2019-1170776На этой неделе
A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop.
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 38 %mozilla · firefox23 июл. 2019 г.
- CVE-2023-307975На этой неделе
Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corruption via a crafted
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 32 %google · chrome5 июн. 2023 г.
- CVE-2017-507075На этой неделе
Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for Android, allowed a remote atta
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 32 %google · chrome27 окт. 2017 г.
- CVE-2024-797174На этой неделе
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page.
КритическаяCVSS 9,6KEVГотовый эксплойтEPSS 21 %google · chrome21 авг. 2024 г.
- CVE-2024-494773На этой неделе
Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a craf
КритическаяCVSS 9,6KEVГотовый эксплойтEPSS 15 %google · chrome15 мая 2024 г.
- CVE-2024-3817872На этой неделе
Scripting Engine Memory Corruption Vulnerability
ВысокаяCVSS 7,5KEVГотовый эксплойтEPSS 41 %microsoft · windows 10 150713 авг. 2024 г.
- CVE-2022-109672На этой неделе
Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit heap corruption via a crafted H
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 24 %google · chrome22 июл. 2022 г.
- CVE-2023-3243972На этой неделе
A type confusion issue was addressed with improved checks.
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 24 %apple · safari23 июн. 2023 г.
- CVE-2025-1058571На этой неделе
Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit heap corruption via a crafted
КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 5 %google · chrome24 сент. 2025 г.
- CVE-2019-850670На этой неделе
A type confusion issue was addressed with improved memory handling.
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 16 %apple · icloud18 дек. 2019 г.
- CVE-2022-426270На этой неделе
Type confusion in V8 in Google Chrome prior to 108.0.5359.94 allowed a remote attacker to potentially exploit heap corruption via a crafted
ВысокаяCVSS 8,8KEVГотовый эксплойтEPSS 16 %google · chrome2 дек. 2022 г.