CVE-2022-4262
Exploited in the Wild
✓ Confirmed 0-Day
★ Google Project Zero
Triaged: March 3, 2026
7 articles
EPSS Score
Source: FIRST.org · 2026-05-24
8.56%
probability
This CVE has a 8.56% probability
of being exploited in the next 30 days.
0%
Top 92.5th percentile of all CVEs
100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE.
View on VulnerabilityLookup ↗
Description
Project ZeroType confusion in V8
Attack Intelligence
Google Project Zero
Discovered
Nov. 29, 2022
Patched
Dec. 2, 2022
Reported by
Clement Lecigne of Google's Threat Analysis Group
Root Cause Analysis
https://googleprojectzero.github.io/0days-in-the-wild//0day-RCAs/2022/CVE-2022-4262.html
Exploits & PoC
mistymntncop/CVE-2022-4262
PoC CVE-2022-4262 — mistymntncop/CVE-2022-4262
58
1 repo — triés par ⭐
Rechercher sur GitHub ↗
Google Rolls Out New Chrome Browser Update to Patch Yet Another Zero-Day Vulnerability
TheHackerNews
Google Chrome emergency update fixes 9th zero-day of the year
BleepingComputer
Dec 02, 2022
Google finds more Android, iOS zero-days used to install spyware
BleepingComputer
Mar 29, 2023
Security Advisory 2023-024
CERT-EU
Apr 18, 2023
Security Advisory 2022-085
CERT-EU
Dec 05, 2022
Signal Intelligence
Confidence
92%
EPSS
8.56%
Mentions
7
Last Seen
Apr 18, 2023
CNA Information
Analyst Note
This CVE meets confirmed status due to its official Google/Chromium classification with high severity, inclusion in Project Zero research, and corroborating CERT-EU security advisories. The type confusion vulnerability enabling heap corruption has been formally documented and patched in Chrome version 108.0.5359.94.
Triage Info
Decided atMar 03, 2026