CWE-843Base9 in KEV

Access of Resource Using Incompatible Type ('Type Confusion')

Incomplete in the CWE catalog · 505 CVEs mapped

505
CVEs mapped
9
In KEV
7.8
Median CVSS
What it is

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

Recent examples
none
CVE-2026-20508

In Power HAL, there is a possible escalation of privilege due to type confusion

In Power HAL, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11165543; Issue ID: MSV-9012.

no explanation yet
epss
8.8cvss
CVE-2026-85051

CVE-2026-85051 - HIGH Severity Vulnerability

Type confusion in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)

HIGHno explanation yet
0%
epss
8.8cvss
CVE-2026-85046

Google Chromium V8 Type Confusion Vulnerability

Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)

KEV · due Sep 18HIGHno explanation yet
1%
epss
The record
Technical detail
CWE ID
CWE-843
Abstraction
Base
Structure
Simple
Status
Incomplete
References (1)