CWE-843: CWE-843

200
Total CVEs
25
Critical
147
High
8.1
Avg CVSS
4
In CISA KEV

Yearly Trend

2026
12
2025
68
2024
52
2023
35
2022
13

Top Affected Vendors

1 Google 67
2 Microsoft 32
3 Apple 25
4 Fedoraproject 21
5 Debian 12
6 Ashlar 7
7 Linux 5
8 Foxit 5
9 Huawei 5
10 Facebook 4

All CWE-843 CVEs (200)

CVE-2024-8904
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows attackers to trigger heap corruption through malicious web pa...

Sep 17, 2024
CVE-2024-8638
8.8

This is a type confusion vulnerability in Chrome's V8 JavaScript engine that allows attackers to corrupt memory objects through malicious HTML pages. ...

Sep 11, 2024
CVE-2024-7969
8.8

A type confusion vulnerability in Chrome's V8 JavaScript engine allows attackers to execute arbitrary code through heap corruption when users visit ma...

Aug 21, 2024
CVE-2024-7550
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow an attacker to trigger heap corruption by tricking the b...

Aug 6, 2024
CVE-2024-6100
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows a remote attacker to execute arbitrary code by tricking a use...

Jun 20, 2024
CVE-2024-5830
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows an attacker to write data outside the bounds of allocated mem...

Jun 11, 2024
CVE-2024-5838
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows attackers to perform out-of-bounds memory access by tricking ...

Jun 11, 2024
CVE-2024-1938
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows attackers to corrupt memory objects through malicious HTML pa...

Feb 29, 2024
CVE-2024-23222
8.8

A type confusion vulnerability in Apple's WebKit browser engine allows processing malicious web content to execute arbitrary code. This affects users ...

Jan 23, 2024
CVE-2023-41060
8.8

This CVE describes a type confusion vulnerability in Apple's kernel that could allow a remote attacker to execute arbitrary code with kernel privilege...

Jan 10, 2024
CVE-2023-6702
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow an attacker to trigger heap corruption by tricking the b...

Dec 14, 2023
CVE-2023-41257
8.8

A type confusion vulnerability in Foxit Reader 12.1.2.15356 allows arbitrary code execution when processing malicious PDF files containing JavaScript....

Nov 27, 2023
CVE-2023-4762
8.8

This is a type confusion vulnerability in Chrome's V8 JavaScript engine that allows remote attackers to execute arbitrary code by tricking the browser...

Sep 5, 2023
CVE-2023-32358
8.8

This CVE describes a type confusion vulnerability in Apple's WebKit browser engine that could allow attackers to execute arbitrary code on affected de...

Aug 14, 2023
CVE-2022-4912
8.8

This vulnerability is a type confusion flaw in Chrome's MathML implementation that allows a remote attacker to trigger heap corruption via a malicious...

Jul 29, 2023
CVE-2023-32664
8.8

A type confusion vulnerability in Foxit Reader's JavaScript checkThisBox method allows memory corruption when processing malicious PDF files. This can...

Jul 19, 2023
CVE-2023-3420
8.8

This is a type confusion vulnerability in Chrome's V8 JavaScript engine that could allow an attacker to trigger heap corruption by tricking the browse...

Jun 26, 2023
CVE-2023-32439
8.8

This is a type confusion vulnerability in Apple's WebKit browser engine that allows processing malicious web content to execute arbitrary code. It aff...

Jun 23, 2023
CVE-2023-3216
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow a remote attacker to trigger heap corruption by tricking...

Jun 13, 2023
CVE-2023-3079
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows a remote attacker to trigger heap corruption by tricking the ...

Jun 5, 2023
CVE-2023-2935
8.8

This is a type confusion vulnerability in Chrome's V8 JavaScript engine that could allow an attacker to corrupt heap memory. Attackers could exploit t...

May 30, 2023
CVE-2023-2033
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow a remote attacker to execute arbitrary code or cause hea...

Apr 14, 2023
CVE-2023-24927
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems using Microsoft PostScript and PCL6 Class Printer Drivers. Attackers c...

Apr 11, 2023
CVE-2023-24929
8.8

This vulnerability allows remote attackers to execute arbitrary code on systems using vulnerable Microsoft PostScript and PCL6 Class Printer Drivers. ...

Apr 11, 2023
CVE-2023-1215
8.8

This vulnerability is a type confusion flaw in Chrome's CSS engine that allows a remote attacker to trigger heap corruption by tricking the browser in...

Mar 7, 2023
CVE-2023-0703
8.8

This vulnerability involves type confusion in Chrome DevTools that could allow heap corruption through specific UI interactions. Attackers could poten...

Feb 7, 2023
CVE-2022-2295
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow a remote attacker to trigger heap corruption by tricking...

Jul 28, 2022
CVE-2022-1364
8.8

This is a type confusion vulnerability in Chrome's V8 JavaScript engine that could allow an attacker to execute arbitrary code or cause heap corruptio...

Jul 26, 2022
CVE-2022-1314
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow a remote attacker to execute arbitrary code or cause hea...

Jul 25, 2022
CVE-2022-0795
8.8

This vulnerability is a type confusion flaw in Chrome's Blink layout engine that allows attackers to trigger heap corruption through malicious HTML pa...

Apr 5, 2022
CVE-2021-4078
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows a remote attacker to potentially exploit heap corruption. Att...

Dec 23, 2021
CVE-2021-4061
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow an attacker to execute arbitrary code or cause heap corr...

Dec 23, 2021
CVE-2021-38007
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow a remote attacker to trigger heap corruption. Attackers ...

Dec 23, 2021
CVE-2021-38001
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow an attacker to trigger heap corruption by tricking the b...

Nov 23, 2021
CVE-2021-30818
8.8

CVE-2021-30818 is a type confusion vulnerability in Apple's WebKit browser engine that allows arbitrary code execution when processing malicious web c...

Oct 28, 2021
CVE-2021-30627
8.8

This vulnerability is a type confusion flaw in Chrome's Blink layout engine that allows a remote attacker to potentially exploit heap corruption via a...

Oct 8, 2021
CVE-2021-30758
8.8

This vulnerability allows attackers to execute arbitrary code on affected Apple devices by tricking users into visiting malicious websites. It affects...

Sep 8, 2021
CVE-2021-30598
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows remote attackers to execute arbitrary code within the browser...

Aug 26, 2021
CVE-2021-31008
8.8

This is a type confusion vulnerability in Apple's WebKit browser engine that could allow remote code execution when processing malicious web content. ...

Aug 24, 2021
CVE-2021-30588
8.8

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that could allow a remote attacker to execute arbitrary code via heap cor...

Aug 3, 2021
CVE-2021-21230
8.8

This is a type confusion vulnerability in Chrome's V8 JavaScript engine that could allow a remote attacker to execute arbitrary code or cause heap cor...

Apr 30, 2021
CVE-2021-1789
8.8

CVE-2021-1789 is a type confusion vulnerability in Apple's WebKit browser engine that allows arbitrary code execution when processing malicious web co...

Apr 2, 2021
CVE-2023-31322
8.7

This vulnerability involves type confusion in AMD's ASP (AMD Secure Processor) that allows attackers to pass malformed arguments to the RAS (Reliabili...

Sep 6, 2025
CVE-2024-38218
8.4

This vulnerability in Microsoft Edge allows attackers to execute arbitrary code by exploiting memory corruption through specially crafted HTML content...

Aug 12, 2024
CVE-2024-27236
8.4

This vulnerability allows local attackers to escalate privileges on affected Android devices through memory corruption in the aoc_unlocked_ioctl funct...

Mar 11, 2024
CVE-2025-6554
KEV 8.1

This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows attackers to perform arbitrary memory read/write operations. ...

Jun 30, 2025
CVE-2024-53427
8.1

A stack-based buffer overflow vulnerability in jq's decNumberCopy function allows out-of-bounds writes when processing specially crafted JSON input co...

Feb 26, 2025
CVE-2024-34392
8.1

libxmljs, a Node.js binding for libxml2, has a type confusion vulnerability when parsing specially crafted XML with namespaces() on a grand-child node...

May 2, 2024
CVE-2024-34394
8.1

libxmljs2 has a type confusion vulnerability when parsing malicious XML with entity references, then calling the namespaces() function on specific nod...

May 2, 2024
CVE-2024-21357
8.1

This vulnerability allows remote attackers to execute arbitrary code on affected Windows systems by sending specially crafted PGM (Pragmatic General M...

Feb 13, 2024

About CWE-843 (CWE-843)

Our database tracks 200 CVEs classified as CWE-843, with 25 rated critical and 147 rated high severity. The average CVSS score for CWE-843 vulnerabilities is 8.1.

External reference: View CWE-843 on MITRE CWE →

Monitor CWE-843 Vulnerabilities

Get alerted when new CWE-843 CVEs affect your infrastructure.

Start Monitoring Free