Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-1471

90
FAUCET Score

CVE-2022-1471 is a critical deserialization vulnerability in SnakeYaml, affecting the snakeyaml_project. It allows remote code execution (RCE) when an attacker provides malicious YAML content, as the Constructor() class does not restrict instantiated types. With a CVSS score of 9.8 (CRITICAL), this vulnerability is easily exploitable over the network with low attack complexity, leading to complete compromise of confidentiality, integrity, and availability. While not listed in CISA's KEV catalog, exploit modules exist (e.g., Metasploit for PyTorch Model Server), and it has garnered significant community discussion and media coverage, indicating high awareness and potential for exploitation. Organizations are advised to use SnakeYaml's SafeConstructor and upgrade to version 2.0 or newer.

Impacted Technologies

VendorProductVersion(s)CPE
< 2.0CPE matchmatch criteria
cpe:2.3:a:snakeyaml_project:snakeyaml:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.3HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
LOW
Exploitability Score
2.8
Impact Score
5.5
CvssVersion
3.1

Exploit Intelligence

EPSS Score
99.61%
Probability of exploitation in next 30 days
EPSS Percentile
99.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
Metasploit: PyTorch Model Server Registration and Deserialization RCE · Oct 3, 2023
This CVE's current EPSS score of 0.9961 is in the 100th percentile among its peer group of 36,821 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (55)

mavenpatch availablevia ghsa
Product: org.yaml:snakeyamlFixed in: 2.0
redhatpatch availablevia redhat_api
Product: AMQ ClientsFixed in: snakeyaml
View patch
redhatpatch availablevia redhat_api
Product: OpenShift Developer Tools and Services for OCP 4.11Fixed in: jenkins-2-plugins-0:4.11.1683009941-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OpenShift Developer Tools and Services for OCP 4.11Fixed in: jenkins-2-plugins-0:4.11.1698299029-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OpenShift Developer Tools and Services for OCP 4.11Fixed in: jenkins-2-plugins-0:4.11.1706516946-1.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat AMQ Streams 2.5.0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat build of Eclipse Vert.x 4.3.4Fixed in: snakeyaml
View patch
redhatpatch availablevia redhat_api
Product: Red Hat build of Quarkus
View patch
redhatpatch availablevia redhat_api
Product: Red Hat build of Quarkus 2.7.7Fixed in: snakeyaml
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: prometheus-jmx-exporter-0:0.12.0-9.el8_7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7Fixed in: snakeyaml
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-resteasy-0:3.0.27-1.Final_redhat_00001.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-jackson-modules-java8-0:2.10.4-2.redhat_00004.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-resteasy-0:3.11.6-1.Final_redhat_00001.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-snakeyaml-0:1.33.0-1.SP1_redhat_00001.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.4 for RHEL 8Fixed in: eap7-snakeyaml-0:1.33.0-2.SP1_redhat_00001.1.el8eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.4 for RHEL 9Fixed in: eap7-snakeyaml-0:1.33.0-2.SP1_redhat_00001.1.el9eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.4 on RHEL 7Fixed in: eap7-snakeyaml-0:1.33.0-2.SP1_redhat_00001.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.10Fixed in: jenkins-2-plugins-0:4.10.1675407676-1.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.9Fixed in: jenkins-2-plugins-0:4.9.1675668922-1.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Satellite 6.13 for RHEL 8Fixed in: candlepin-0:4.2.13-1.el8sat
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Single Sign-On 7Fixed in: snakeyaml
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Single Sign-On 7.6 for RHEL 7Fixed in: rh-sso7-keycloak-0:18.0.6-1.redhat_00001.1.el7sso
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Single Sign-On 7.6 for RHEL 8Fixed in: rh-sso7-keycloak-0:18.0.6-1.redhat_00001.1.el8sso
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Single Sign-On 7.6 for RHEL 9Fixed in: rh-sso7-keycloak-0:18.0.6-1.redhat_00001.1.el9sso
View patch
redhatpatch availablevia redhat_api
Product: Red Hat support for Spring Boot 2.7.13Fixed in: snakeyaml
View patch
redhatpatch availablevia redhat_api
Product: RHEL-7 based Middleware ContainersFixed in: openjdk/openjdk-11-rhel7:1.17-1
View patch
redhatpatch availablevia redhat_api
Product: RHEL-7 based Middleware ContainersFixed in: redhat-openjdk-18/openjdk18-openshift:1.17-1
View patch
redhatpatch availablevia redhat_api
Product: RHEL-8 based Middleware ContainersFixed in: ubi8/openjdk-11:1.14-11
View patch
redhatpatch availablevia redhat_api
Product: RHEL-8 based Middleware ContainersFixed in: ubi8/openjdk-11-runtime:1.14-11
View patch
redhatpatch availablevia redhat_api
Product: RHEL-8 based Middleware ContainersFixed in: ubi8/openjdk-17:1.14-9
View patch
redhatpatch availablevia redhat_api
Product: RHEL-8 based Middleware ContainersFixed in: ubi8/openjdk-17-runtime:1.14-8
View patch
redhatpatch availablevia redhat_api
Product: RHEL-8 based Middleware ContainersFixed in: ubi8/openjdk-8:1.14-12
View patch
redhatpatch availablevia redhat_api
Product: RHEL-8 based Middleware ContainersFixed in: ubi8/openjdk-8-runtime:1.14-10
View patch
redhatpatch availablevia redhat_api
Product: RHEL-8 based Middleware ContainersFixed in: rh-sso-7/sso76-openshift-rhel8:7.6-20
View patch
redhatpatch availablevia redhat_api
Product: RHPAM 7.13.5 asyncFixed in: snakeyaml
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-snakeyaml-0:1.33.0-1.SP1_redhat_00001.1.ep7.el7
View patch
redhatno patchvia redhat_api
Product: streams for Apache KafkaFixed in: snakeyaml
redhatno patchvia redhat_api
Product: Red Hat build of Apache Camel for Spring Boot 3Fixed in: snakeyaml
redhatno patchvia redhat_api
Product: Red Hat OpenShift Container Platform 3.11Fixed in: openshift3/ose-metrics-hawkular-metrics
redhatno patchvia redhat_api
Product: Red Hat OpenShift Dev SpacesFixed in: devspaces/idea-rhel8
redhatno patchvia redhat_api
Product: Red Hat OpenShift Dev SpacesFixed in: devspaces/udi-rhel8
redhatno patchvia redhat_api
Product: Red Hat Satellite 6Fixed in: puppetserver
redhatno patchvia redhat_api
Product: A-MQ Clients 2Fixed in: snakeyaml
redhatno patchvia redhat_api
Product: Red Hat Decision Manager 7Fixed in: snakeyaml
redhatno patchvia redhat_api
Product: Red Hat OpenShift Application RuntimesFixed in: snakeyaml
redhatno patchvia redhat_api
Product: Red Hat OpenShift Container Platform 3.11Fixed in: jenkins-2-plugins
redhatno patchvia redhat_api
Product: Red Hat OpenShift Container Platform 3.11Fixed in: openshift3/metrics-cassandra
redhatno patchvia redhat_api
Product: Red Hat OpenShift Container Platform 3.11Fixed in: openshift3/metrics-hawkular-metrics
redhatno patchvia redhat_api
Product: Red Hat OpenShift Container Platform 3.11Fixed in: openshift3/ose-metrics-cassandra
redhatend of lifevia redhat_api
Product: Red Hat Data Grid 8Fixed in: snakeyaml
redhatend of lifevia redhat_api
Product: Red Hat Integration Camel Quarkus 1Fixed in: snakeyaml
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: snakeyaml
redhatend of lifevia redhat_api
Product: Red Hat Fuse 7Fixed in: snakeyaml
redhatend of lifevia redhat_api
Product: Red Hat Integration Camel K 1Fixed in: snakeyaml

Vendor Advisories (2)

mavenGHSA-mjmj-j48q-9wg2high

SnakeYaml Constructor Deserialization Remote Code Execution

Dec 12, 2022
redhatCVE-2022-1471Important

SnakeYaml: Constructor Deserialization Remote Code Execution

Oct 13, 2022

References

packetstormsecurity.com / files/175095/PyTorch-Model-Server-Registration-Deserialization-Remote-Code-Execution.html
bitbucket.org / snakeyaml/snakeyaml/issues/561/cve-2022-1471-vulnerability-in
Issue TrackingThird Party Advisory
confluence.atlassian.com / security/cve-2022-1471-snakeyaml-library-rce-vulnerability-in-multiple-products-1296171009.html
github.com / google/security-research/security/advisories/GHSA-mjmj-j48q-9wg2
ExploitThird Party Advisory
github.com / mbechler/marshalsec
ExploitThird Party Advisory
groups.google.com / g/kubernetes-security-announce/c/mwrakFaEdnc
infosecwriteups.com / %EF%B8%8F-inside-the-160-comment-fight-to-fix-snakeyamls-rce-default-1a20c5ca4d4c
security.netapp.com / advisory/ntap-20230818-0015
security.netapp.com / advisory/ntap-20240621-0006
github.com / mbechler/marshalsec/blob/master/marshalsec.pdf
ExploitThird Party Advisory
openwall.com / lists/oss-security/2023/11/19/1