Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an
After Effects versions 25.6 and earlier are affected by an Access of Resource Using Incompatible Type ('Type Confusion')
Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized attacker to
A type confusion vulnerability exists in the EMF functionality of Canva Affinity. A specially crafted EMF file can trigg
Labcenter Electronics Proteus PDSPRJ File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability
Access of resource using incompatible type ('type confusion') in Windows OLE allows an authorized attacker to elevate pr
Adobe Framemaker versions 2022.8 and earlier are affected by an Access of Resource Using Incompatible Type ('Type Confus
In the Linux kernel, the following vulnerability has been resolved: team: fix header_ops type confusion with non-Ethern
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an
Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker
Access of resource using incompatible type ('type confusion') in Windows Kernel-Mode Drivers allows an authorized attack
In AzeoTech DAQFactory versions 21.1 and prior, a Type Confusion vulnerability can be exploited by an attacker using spe
There is an abnormal annotation within the PDF that is referenced by other objects. When the application parses the PDF,
Access of resource using incompatible type ('type confusion') in Windows Connected User Experiences and Telemetry allows
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to exe
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker
Access of resource using incompatible type ('type confusion') in Windows DWM allows an authorized attacker to elevate pr
Access of resource using incompatible type ('type confusion') in Windows DWM Core Library allows an authorized attacker
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to exe
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker
In OpenStack Keystone before 28.0.1, the LDAP identity backend does not convert the user enabled attribute to a boolean
jsonwebtoken is a JWT lib in rust. Prior to version 10.3.0, there is a Type Confusion vulnerability in jsonwebtoken, spe
Information disclosure due to JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed i
Lexbor is a web browser engine library. Prior to 2.7.0, a type‑confusion vulnerability exists in Lexbor’s HTML fragment
Qwik is a performance-focused JavaScript framework. Versions prior to 1.19.2 improperly inferred arrays from dotted form
A flaw in Node.js HTTP request handling causes an uncaught `TypeError` when a request is received with a header named `_
A type confusion issue was addressed with improved checks. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5
Multiple flaws have been identified in `named` related to the handling of DNS messages whose CLASS is not Internet (`IN`
Type Confusion in GFX in Google Chrome on Linux, ChromeOS prior to 148.0.7778.179 allowed a remote attacker who had comp
free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's NRF root SBI endpoint POST /o
Type Confusion in V8 in Google Chrome prior to 148.0.7778.216 allowed an attacker who convinced a user to install a mali
An unauthenticated attacker can crash the worklist server with a single crafted query when the server has a valid Called
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized
Access of resource using incompatible type ('type confusion') in .NET Core allows an unauthorized attacker to deny servi
Type Confusion in V8 in Google Chrome prior to 151.0.7922.72 allowed an attacker who convinced a user to install a malic
n8n before 1.123.67, 2.x before 2.31.5, and 2.32.x before 2.32.1 contain a type confusion vulnerability in the Send Emai
ZEBRA is a Zcash node written entirely in Rust. Prior to 4.5.0, an unauthenticated IPv4 peer can deterministically termi
Access of resource using incompatible type ('type confusion') in Microsoft Edge (Chromium-based) allows an unauthorized
Cpanel::JSON::XS versions before 4.41 for Perl allow type confusion via duplicate object keys when dupkeys_as_arrayref i
A vulnerability was determined in USCiLab Cereal up to 1.3.2. Affected is an unknown function of the component Shared Po
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of ICC color
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the
The compiler is meant to unwrap pointers which are the operands of a memory move; a no-op interface conversion prevented
Access of resource using incompatible type ('type confusion') in Windows Kernel allows an authorized attacker to elevate
Out-of-bounds read in Code Integrity DLL (ci.dll) allows an authorized attacker to elevate privileges locally.
Access of resource using incompatible type ('type confusion') vulnerability in Samsung Open Source Escargot allows Point
Frequently Asked Questions
What is CWE-843?
CWE-843 (CWE-843) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-843?
There are 216 CVE records associated with CWE-843 in our database. Of these, 29 are critical severity, 120 are high severity, and 45 are medium severity.
How can I protect against CWE-843 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-843 using AI-powered security agents.
Detect CWE-843 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-843 vulnerabilities across your infrastructure.
Get Started