CWE-843: CWE-843
Yearly Trend
Top Affected Vendors
All CWE-843 CVEs (206)
A stack-based buffer overflow vulnerability in jq's decNumberCopy function allows out-of-bounds writes when processing specially crafted JSON input co...
Feb 26, 2025libxmljs, a Node.js binding for libxml2, has a type confusion vulnerability when parsing specially crafted XML with namespaces() on a grand-child node...
May 2, 2024libxmljs2 has a type confusion vulnerability when parsing malicious XML with entity references, then calling the namespaces() function on specific nod...
May 2, 2024This vulnerability allows remote attackers to execute arbitrary code on affected Windows systems by sending specially crafted PGM (Pragmatic General M...
Feb 13, 2024This is a type confusion vulnerability in Chrome's V8 JavaScript engine that allows attackers to perform arbitrary memory read/write operations. Attac...
Aug 3, 2023This vulnerability is a type confusion flaw in Chrome's V8 JavaScript engine that allows attackers to perform arbitrary memory read/write operations. ...
Aug 3, 2023This vulnerability allows remote attackers to execute arbitrary code on affected Windows systems by sending specially crafted PGM (Pragmatic General M...
Jul 11, 2023This vulnerability in the Rust model crate allows data races and memory corruption by incorrectly marking the Shared data structure as thread-safe (Se...
Aug 8, 2021A permission control vulnerability in Huawei's distributed component allows unauthorized access to sensitive information. This affects Huawei products...
Nov 28, 2025This CVE describes a type confusion vulnerability in Apple operating systems that could allow a remote attacker to cause application crashes or execut...
Jan 27, 2025A type confusion bug in CPython 3.11-3.13.1 when using try/except* statements allows bypassing RestrictedPython's security restrictions. This affects ...
Jan 23, 2025Adobe After Effects versions 25.6 and earlier contain a type confusion vulnerability that could allow arbitrary code execution when a user opens a mal...
Feb 10, 2026This vulnerability is a type confusion flaw in Windows Ancillary Function Driver for WinSock that allows an authenticated attacker to escalate privile...
Jan 13, 2026A memory corruption vulnerability in AzeoTech DAQFactory allows attackers to execute arbitrary code by tricking users into opening malicious .ctl file...
Dec 11, 2025A type confusion vulnerability in Microsoft Office Excel allows attackers to execute arbitrary code on a victim's system by tricking them into opening...
Aug 12, 2025This is a type confusion vulnerability in Windows Push Notifications that allows an authenticated attacker to escalate privileges on a local system. A...
Aug 12, 2025This vulnerability is a type confusion flaw in Windows Push Notifications that allows an authenticated attacker to escalate privileges on a local syst...
Aug 12, 2025This vulnerability allows remote attackers to execute arbitrary code on systems running vulnerable versions of INVT VT-Designer when users open malici...
Jul 21, 2025A type confusion vulnerability in Microsoft Office allows attackers to execute arbitrary code on vulnerable systems by tricking users into opening mal...
Jul 8, 2025A type confusion vulnerability in Microsoft Office Excel allows attackers to execute arbitrary code on vulnerable systems by tricking users into openi...
May 13, 2025A type confusion vulnerability in Microsoft Office allows attackers to execute arbitrary code on vulnerable systems by tricking users into opening mal...
Apr 8, 2025A type confusion vulnerability in Apple's WebKit browser engine could allow memory corruption when processing floating-point numbers. This affects use...
Mar 31, 2025This vulnerability allows remote attackers to execute arbitrary code on Ashlar-Vellum Cobalt installations by tricking users into opening malicious VS...
Mar 11, 2025This vulnerability allows remote attackers to execute arbitrary code on Ashlar-Vellum Cobalt installations by tricking users into opening malicious VS...
Mar 11, 2025This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious VS files in Ashlar-Vellum Cobalt softwar...
Mar 11, 2025This vulnerability allows remote attackers to execute arbitrary code on Ashlar-Vellum Cobalt installations by tricking users into opening malicious VC...
Mar 11, 2025This CVE describes a remote code execution vulnerability in Internet Explorer that allows attackers to execute arbitrary code on affected systems. Att...
Jan 14, 2025This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious CO files or visiting malicious web pages...
Dec 30, 2024This vulnerability allows remote attackers to execute arbitrary code on Ashlar-Vellum Cobalt installations by tricking users into opening malicious XE...
Dec 30, 2024This vulnerability allows remote attackers to execute arbitrary code on systems running vulnerable versions of IrfanView when users open malicious DXF...
Nov 22, 2024This vulnerability allows local privilege escalation on Android devices through type confusion in Parcel.java's writeTypedArrayList and readTypedArray...
Nov 19, 2024This CVE describes a Type Confusion vulnerability in Adobe Acrobat Reader that could allow arbitrary code execution when a user opens a malicious PDF ...
Sep 13, 2024This vulnerability in Microsoft Edge (Chromium-based) allows remote attackers to execute arbitrary code on affected systems by tricking users into vis...
Aug 22, 2024This vulnerability is a type confusion flaw in Android's Low-Level Workload Isolation System (LWIS) that allows local privilege escalation without use...
Jun 13, 2024Fuji Electric Monitouch V-SFT software contains a type confusion vulnerability that leads to out-of-bounds write, potentially allowing attackers to ex...
May 30, 2024A type confusion vulnerability in Simcenter Femap allows attackers to execute arbitrary code by tricking the application into misinterpreting data typ...
May 14, 2024A type confusion vulnerability in Simcenter Femap allows attackers to execute arbitrary code by tricking the application into misinterpreting data typ...
May 14, 2024This vulnerability in Foxit PDF Reader allows remote attackers to execute arbitrary code by tricking users into opening malicious PDF files. The flaw ...
May 3, 2024This vulnerability allows remote attackers to execute arbitrary code on Ashlar-Vellum Cobalt installations by tricking users into opening malicious AR...
May 3, 2024This vulnerability in PDF-XChange Editor allows remote attackers to execute arbitrary code by tricking users into opening malicious PDF files or visit...
May 3, 2024This vulnerability in Kofax Power PDF allows remote attackers to execute arbitrary code by tricking users into opening malicious PDF files or visiting...
May 3, 2024This vulnerability in Foxit PDF Reader allows attackers to execute arbitrary code by tricking users into opening malicious PDF files. The flaw exists ...
Apr 2, 2024This vulnerability allows remote attackers to execute arbitrary code on systems running Microsoft Message Queuing (MSMQ) by sending specially crafted ...
Feb 13, 2024A type confusion vulnerability in Apple operating systems allows malicious applications to execute arbitrary code with kernel privileges. This affects...
Jan 10, 2024This Windows Graphics Component vulnerability allows an authenticated attacker to execute arbitrary code with SYSTEM privileges by exploiting improper...
Oct 10, 2023A type confusion vulnerability in Siemens JT2Go, Teamcenter Visualization, and Tecnomatix Plant Simulation allows remote code execution when parsing m...
Sep 12, 2023A type confusion vulnerability in Panasonic Control FPWIN Pro allows arbitrary code execution when opening malicious project files. This affects all v...
Jul 21, 2023This vulnerability allows remote attackers to execute arbitrary code on systems running vulnerable versions of Microsoft Edge. Attackers can exploit t...
Jul 14, 2023CVE-2023-35356 is a Windows kernel elevation of privilege vulnerability that allows authenticated attackers to execute arbitrary code with SYSTEM priv...
Jul 11, 2023This CVE describes a type confusion vulnerability in Apple operating systems that allows an application to execute arbitrary code with kernel privileg...
Jun 23, 2023About CWE-843 (CWE-843)
Our database tracks 206 CVEs classified as CWE-843, with 26 rated critical and 152 rated high severity. The average CVSS score for CWE-843 vulnerabilities is 8.1.
External reference: View CWE-843 on MITRE CWE →
Monitor CWE-843 Vulnerabilities
Get alerted when new CWE-843 CVEs affect your infrastructure.
Start Monitoring Free