CWE-843 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-843 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2011-0611Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and e…99.4%높음8.8● 랜섬웨어 캠페인에 사용됨CVE-2012-0507Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update…98.1%심각9.8● 실제 악용이 확인됨CVE-2017-8291Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdpa…97.0%높음7.8● 실제 악용이 확인됨CVE-2021-21224Type confusion in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker to execute arb…84.2%높음8.8● 랜섬웨어 캠페인에 사용됨CVE-2019-0752A remote code execution vulnerability exists in the way that the scripting engine handles objects in…81.6%높음7.5● 실제 악용이 확인됨CVE-2017-0037Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::…80.4%높음8.1● 실제 악용이 확인됨CVE-2016-7201The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrar…80.0%높음8.8● 실제 악용이 확인됨CVE-2020-6418Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentiall…78.8%높음8.8
전체 목록
104건
CVE-2018-8298악용 확인A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects i…74.7%높음7.5
CVE-2021-30551악용 확인Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit …64.7%높음8.8
CVE-2026-85046악용 확인Type confusion in V8 in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arbitrary co…48.9%높음8.8
CVE-2020-16009악용 확인Inappropriate implementation in V8 in Google Chrome prior to 86.0.4240.183 allowed a remote attacker to potent…48.3%높음8.8
CVE-2019-17026악용 확인Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusio…46.3%높음8.8
CVE-2023-4762악용 확인Type Confusion in V8 in Google Chrome prior to 116.0.5845.179 allowed a remote attacker to execute arbitrary c…41.4%높음8.8
CVE-2023-2033악용 확인Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit…40.8%높음8.8
CVE-2019-11707악용 확인A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This…37.7%높음8.8
CVE-2023-3079악용 확인Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit…32.1%높음8.8
CVE-2017-5070악용 확인Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, Windows, and Mac, and 59.0.3071.92 for …32.1%높음8.8
CVE-2025-30397악용 확인Access of resource using incompatible type ('type confusion') in Microsoft Scripting Engine allows an unauthor…26.8%높음7.5
CVE-2022-1096악용 확인Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit h…24.2%높음8.8
CVE-2023-32439악용 확인A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5.1 and iPadOS 16.5.1…24.0%높음8.8
CVE-2022-4262악용 확인Type confusion in V8 in Google Chrome prior to 108.0.5359.94 allowed a remote attacker to potentially exploit …23.5%높음8.8
CVE-2024-7971악용 확인Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corrupt…21.1%심각9.6
CVE-2019-8506악용 확인A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, tvOS 12.2…16.2%높음8.8
CVE-2024-4947악용 확인Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary co…15.2%심각9.6
CVE-2025-6554악용 확인Type confusion in V8 in Google Chrome prior to 138.0.7204.96 allowed a remote attacker to perform arbitrary re…14.1%높음8.1
CVE-2021-1789악용 확인A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.2, …14.0%높음8.8
CVE-2022-1364악용 확인Type confusion in V8 Turbofan in Google Chrome prior to 100.0.4896.127 allowed a remote attacker to potentiall…13.7%높음8.8
CVE-2017-11292악용 확인Adobe Flash Player version 27.0.0.159 and earlier has a flawed bytecode verification procedure, which allows f…11.9%높음8.8
CVE-2024-23222악용 확인A type confusion issue was addressed with improved checks. This issue is fixed in Safari 17.3, iOS 15.8.7 and …10.6%높음8.8
CVE-2020-27932악용 확인A type confusion issue was addressed with improved state handling. This issue is fixed in macOS Big Sur 11.0.1…10.3%높음7.8
CVE-2023-23529악용 확인A type confusion issue was addressed with improved checks. This issue is fixed in iOS 15.7.4 and iPadOS 15.7.4…9.5%높음8.8
CVE-2021-30563악용 확인Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit …9.0%높음8.8
CVE-2022-42856악용 확인A type confusion issue was addressed with improved state handling. This issue is fixed in Safari 16.2, tvOS 16…8.5%높음8.8
CVE-2022-3723악용 확인Type confusion in V8 in Google Chrome prior to 107.0.5304.87 allowed a remote attacker to potentially exploit …7.9%높음8.8
CVE-2024-5274악용 확인Type Confusion in V8 in Google Chrome prior to 125.0.6422.112 allowed a remote attacker to execute arbitrary c…7.5%심각9.6
CVE-2025-10585악용 확인Type confusion in V8 in Google Chrome prior to 140.0.7339.185 allowed a remote attacker to potentially exploit…5.4%심각9.8
CVE-2025-13223악용 확인Type Confusion in V8 in Google Chrome prior to 142.0.7444.175 allowed a remote attacker to potentially exploit…5.0%높음8.8
CVE-2021-30869악용 확인A type confusion issue was addressed with improved state handling. This issue is fixed in iOS 12.5.5, iOS 14.4…4.1%높음7.8
CVE-2026-21519악용 확인Access of resource using incompatible type ('type confusion') in Desktop Window Manager allows an authorized a…2.5%높음7.8
CVE-2026-77494Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…1.2%높음7.5
CVE-2026-72938Access of resource using incompatible type ('type confusion') in Microsoft Office PowerPoint allows an unautho…0.9%보통6.5
CVE-2026-77890Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…0.9%높음7.5
CVE-2026-77499Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…0.9%높음7.5
CVE-2026-77889Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…0.9%높음7.5
CVE-2026-77888Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized at…0.9%높음7.5
CVE-2026-61674Fluent Bit is a fast and lightweight logs, metrics, and traces processor for Linux, BSD, macOS, and Windows. F…0.9%심각9.2
CVE-2026-69717Untrusted pointer dereference in Windows Group Policy allows an authorized attacker to elevate privileges over…0.7%높음8.0
CVE-2026-96883pgcollection is an open source extension to PostgreSQL. A type confusion issue in AWS pgcollection 2.0.0 throu…0.7%높음8.7
CVE-2026-69679Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent netwo…0.6%보통5.7
CVE-2026-69637Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent netwo…0.6%보통5.7
CVE-2026-88816DBI versions before 1.654 for Perl incorrectly treat numeric values as strings in FetchHashKeyName. fetchrow_h…0.6%미평가
CVE-2026-94083Suricata before 8.0.7 has a DoH2 type confusion that can cause an invalid free, because cleanup code for the H…0.5%심각9.4
CVE-2026-81401Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized…0.5%보통5.5
CVE-2026-91741Type confusion in CacheStorage in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute ar…0.4%높음8.8
CVE-2026-91731Type confusion in Compositing in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute arb…0.4%높음8.8
CVE-2026-45762Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring …0.4%높음7.5
CVE-2026-95380Type confusion in V8 in Google Chrome prior to 154.0.8037.57 allowed a remote attacker leveraging social engin…0.5%높음8.8
CVE-2026-95365Type confusion in IndexedDB in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to potentially e…0.5%높음8.8
CVE-2026-95306Type confusion in V8 in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitrary co…0.5%높음8.8
CVE-2026-95286Type confusion in Bindings in Google Chrome prior to 154.0.8037.57 allowed a remote attacker to execute arbitr…0.5%높음8.8
CVE-2026-45764Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring …0.4%심각9.1
CVE-2026-93377Type confusion in V8 in Google Chrome prior to 153.0.8010.52 allowed a remote attacker leveraging social engin…0.4%높음8.8
CVE-2026-91709Type confusion in ServiceWorker in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute a…0.4%높음8.8
CVE-2026-69308Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally.0.4%보통5.5
CVE-2026-102323Type confusion in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary co…0.4%높음8.8
CVE-2026-102299Type confusion in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary co…0.4%높음8.8
CVE-2026-85644XS::Parse::Infix versions from 0.40 through 0.49 for Perl treat a number as an array reference. The wrapper fu…0.4%미평가
CVE-2026-101912ip-address is a library for parsing and manipulating IPv4 and IPv6 addresses in JavaScript. Prior to 10.7.1, t…0.4%보통6.3
CVE-2026-71644An issue in Robotics-STAR-Lab (SYSU STAR Group) RACER Tested affected version: commit abcdef1234567890 allows …0.4%심각9.8
CVE-2026-87528Type confusion in Rust in Google Chrome on on Windows prior to 153.0.8010.36 allowed a remote attacker to pote…0.3%심각9.6
CVE-2026-85051Type confusion in Compositing in Google Chrome prior to 152.0.7977.82 allowed a remote attacker to execute arb…0.3%높음8.8
CVE-2026-84563A logic issue was addressed with improved checks. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 1…0.3%높음7.5
CVE-2026-91715Type confusion in ServiceWorker in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to execute a…0.3%높음8.8
CVE-2026-104846Seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities.…0.3%심각9.8
CVE-2026-102321Type confusion in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary co…0.3%높음8.8
CVE-2026-69324Access of resource using incompatible type ('type confusion') in Windows Performance Monitor allows an authori…0.3%높음7.8
CVE-2026-70584Access of resource using incompatible type ('type confusion') in Windows Core Messaging allows an authorized a…0.3%높음7.8
CVE-2026-87612Type confusion in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to execute arbitrary co…0.3%높음8.8
CVE-2026-87636Type confusion in XML in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute…0.3%높음8.8
CVE-2026-102326Type confusion in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary co…0.3%높음8.8
CVE-2026-102328Type confusion in V8 in Google Chrome prior to 154.0.8037.92 allowed a remote attacker to execute arbitrary co…0.3%높음8.8
CVE-2026-82057A security issue was discovered in MongoDB where an authenticated user with readWrite privileges could crash t…0.3%높음7.1
CVE-2026-103625Type confusion in V8 in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary co…0.3%높음8.8
CVE-2026-87564Type confusion in V8 in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to read memory inside t…0.3%보통4.3
CVE-2026-97737In Wakapi before 2.17.6, the user caching service allows a lookup to be resolved in an unintended lookup conte…0.3%높음7.4
CVE-2026-102556A flaw was found in libsoup. When handling an incoming WebSocket Pong frame, SoupWebsocketConnection emitted t…0.2%높음8.6
CVE-2026-80161Acrobat Reader is affected by an Access of Resource Using Incompatible Type ('Type Confusion') vulnerability t…0.2%높음7.8
CVE-2026-88815DBI versions before 1.654 for Perl incorrectly treat numeric values as strings in sql_type_cast_svpv. When cas…0.2%미평가
CVE-2026-18417The native BSD-socket layer recorded a pending asynchronous socket error by type-punning it into struct net_co…0.2%보통6.5
CVE-2026-15461The Sierra Wireless HL78xx modem GNSS driver (drivers/modem/hl78xx/, later drivers/modem/vendor_standalone/hl7…0.2%보통5.3
CVE-2026-47504NVIDIA Linux GPU Display Driver contains a vulnerability in the NGX updater where an outdated embedded cryptog…0.1%높음7.8
CVE-2026-47572NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause…0.1%높음7.8
CVE-2026-47569NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer where a user could cause…0.1%높음7.8
CVE-2026-47583NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel module where an attacker could ca…0.1%높음7.8
CVE-2026-65409A type confusion issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS…0.1%보통5.5
CVE-2026-20508In Power HAL, there is a possible escalation of privilege due to type confusion. This could lead to local esca…0.1%보통6.7
CVE-2026-18458Out-of-bounds Read, Function Call With Incorrect Number of Arguments, Access of Resource Using Incompatible Ty…0.1%보통6.8
CVE-2026-102757An unprivileged, memory-protected ThreadX module can have the kernel read and write memory at addresses of its…0.1%높음8.5
CVE-2026-11389Out-of-bounds Read, Function Call With Incorrect Number of Arguments, Access of Resource Using Incompatible Ty…0.1%보통6.8
CVE-2026-20587In mtee, there is a possible escalation of privilege due to type confusion. This could lead to local escalatio…미평가
CVE-2025-29867Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Hancom Inc. Hancom Office 2018,…높음8.5
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.