Known exploited
WebRTC
CVE published 2022-08-25
CVE-2022-2294
CVE-2022-2294 is a WebRTC heap buffer overflow vulnerability that CISA added to its Known Exploited Vulnerabilities catalog on 2022-08-25. The KEV listing indicates it has been observed in active exploitation, and the supplied metadata also marks known ransomware campaign use as "Known." Because the corpus here is limited, the safest takeaway is that this issue should be treated as a high-priority remedia [truncated]