Show filters
199 Total Results
Displaying 31-40 of 199
Sort by:
Attacker Value
Unknown
CVE-2022-22661
Disclosure Date: March 18, 2022 (last updated February 23, 2025)
A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. An application may be able to execute arbitrary code with kernel privileges.
0
Attacker Value
Unknown
CVE-2021-40061
Disclosure Date: March 10, 2022 (last updated February 23, 2025)
There is a vulnerability of accessing resources using an incompatible type (type confusion) in the Bastet module. Successful exploitation of this vulnerability may affect integrity.
0
Attacker Value
Unknown
CVE-2022-0746
Disclosure Date: February 25, 2022 (last updated February 23, 2025)
Business Logic Errors in GitHub repository dolibarr/dolibarr prior to 16.0.
0
Attacker Value
Unknown
CVE-2022-21656
Disclosure Date: February 22, 2022 (last updated February 23, 2025)
Envoy is an open source edge and service proxy, designed for cloud-native applications. The default_validator.cc implementation used to implement the default certificate validation routines has a "type confusion" bug when processing subjectAltNames. This processing allows, for example, an rfc822Name or uniformResourceIndicator to be authenticated as a domain name. This confusion allows for the bypassing of nameConstraints, as processed by the underlying OpenSSL/BoringSSL implementation, exposing the possibility of impersonation of arbitrary servers. As a result Envoy will trust upstream certificates that should not be trusted.
0
Attacker Value
Unknown
CVE-2022-0688
Disclosure Date: February 20, 2022 (last updated February 23, 2025)
Business Logic Errors in Packagist microweber/microweber prior to 1.2.11.
0
Attacker Value
Unknown
CVE-2022-0689
Disclosure Date: February 19, 2022 (last updated February 23, 2025)
Use multiple time the one-time coupon in Packagist microweber/microweber prior to 1.2.11.
0
Attacker Value
Unknown
CVE-2021-46463
Disclosure Date: February 14, 2022 (last updated February 23, 2025)
njs through 0.7.1, used in NGINX, was discovered to contain a control flow hijack caused by a Type Confusion vulnerability in njs_promise_perform_then().
0
Attacker Value
Unknown
CVE-2022-0102
Disclosure Date: February 12, 2022 (last updated February 23, 2025)
Type confusion in V8 in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
0
Attacker Value
Unknown
CVE-2021-46152
Disclosure Date: February 09, 2022 (last updated February 23, 2025)
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap V2021.1 (All versions). Affected application contains a type confusion vulnerability while parsing NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14643, ZDI-CAN-14644, ZDI-CAN-14755, ZDI-CAN-15183)
0
Attacker Value
Unknown
CVE-2022-0524
Disclosure Date: February 08, 2022 (last updated February 23, 2025)
Business Logic Errors in GitHub repository publify/publify prior to 9.2.7.
0