Skip to content

CVE-2022-22954

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
September 13, 2026
Last Seen
September 14, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical remote code execution (RCE) vulnerability, CVE-2022-22954, affects VMware Workspace ONE Access and Identity Manager through server-side template injection (SSTI). The vulnerability was first published on April 11, 2022, and was added to the CISA Known Exploited Vulnerabilities (KEV) catal...

Public Exploits

Checking GitHub for proof-of-concept code…