CVE-2022-2294CISA KEVEPSS p99.4%

CVE-2022-2294WebRTC Heap Buffer Overflow Vulnerability

WebRTC / WebRTC

Description

WebRTC, an open-source project providing web browsers with real-time communication, contains a heap buffer overflow vulnerability that allows an attacker to perform shellcode execution. This vulnerability impacts web browsers using WebRTC including but not limited to Google Chrome.

Scoring

CVSS 8.8 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS70.46% probability of exploitation · percentile 99.4% · 2026-10-03T12:00:21Z
Last modified2026-08-04

CISA KEV entry

Added to KEV: 2022-08-25

(incoming)1

TypeTargetConfidenceTier
KEVEntryWebRTC Heap Buffer Overflow Vulnerabilitykev-cve-2022-22940%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Google Chromium WebRTC Heap Buffer Overflow Vulnerability
CVE
CVE-2026-7339
CVE
CVE-2026-4463
CVE
CVE-2026-9119
CVE
CVE-2026-4444
CVE
CVE-2026-2650
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.