Skip to main content

CWE archive

CWE-843 CVEs

Programmatic archive

837 CVEs tagged with CWE-843100 Critical, 554 High, 156 Medium, 26 Low, 1 Unrated.

CVE-2021-30563

Published Aug 3, 2021

Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 · High
evidence mentions
9
Buzz score
61.0
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2021-30561

Published Aug 3, 2021

Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 · High
evidence mentions
2
Buzz score
21.0
Vendor/product tagsBeta · best-effort

CVE-2020-22882

Published Jul 13, 2021

Issue was discovered in the fxParserTree function in moddable, allows attackers to cause denial of service via a crafted payload. Fixed in commit 723816ab9b52f807180c99fc69c7d08cf…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-27038

Published Jul 9, 2021

A Type Confusion vulnerability in Autodesk Design Review 2018, 2017, 2013, 2012, 2011 can occur when processing a maliciously crafted PDF file. A malicious actor can leverage this…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-33624

Published Jun 23, 2021

In kernel/bpf/verifier.c in the Linux kernel before 5.12.13, a branch can be mispredicted (e.g., because of type confusion) and consequently an unprivileged BPF program can read a…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-32696

Published Jun 18, 2021

The npm package "striptags" is an implementation of PHP's strip_tags in Typescript. In striptags before version 3.2.0, a type-confusion vulnerability can cause `striptags` to conc…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-30551

Published Jun 15, 2021

Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 · High
evidence mentions
15
Buzz score
67.2
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2021-31480

Published Jun 15, 2021

This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Desktop 16.6.3.84. User interaction is required to exploit this v…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-30517

Published Jun 4, 2021

Type confusion in V8 in Google Chrome prior to 90.0.4430.212 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2021-3320

Published May 25, 2021

Type Confusion in 802154 ACK Frames Handling. Zephyr versions >= v2.4.0 contain NULL Pointer Dereference (CWE-476). For more information, see https://github.com/zephyrproject-rtos…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31318

Published May 18, 2021

Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Type Confusion in the LOTCompLayerItem::LOTCompLayerItem function of their custom fork…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-31317

Published May 18, 2021

Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Type Confusion in the VDasher constructor of their custom fork of the rlottie library.…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-29519

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. The API of `tf.raw_ops.SparseCross` allows combinations which would result in a `CHECK`-failure and denial o…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-29513

Published May 14, 2021

TensorFlow is an end-to-end open source platform for machine learning. Calling TF operations with tensors of non-numeric types when the operations expect numeric tensors result in…

CVSS 2.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-23908

Published May 13, 2021

An issue was discovered in the Headunit NTG6 in the MBUX Infotainment System on Mercedes-Benz vehicles through 2021. A type confusion issue affects MultiSvSetAttributes in the HiQ…

CVSS 2.9 · Low
evidence mentions
3
Buzz score
20.4
Showing 576-600 of 837 CVEsPage 24 of 34