Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-34927

25
FAUCET Score

CVE-2022-34927 is a stack overflow vulnerability in MilkyTracker v1.03.00, specifically within the LoaderXM::load component. This flaw allows an attacker to trigger a denial of service, arbitrary code execution, or information disclosure by supplying a specially crafted XM module file. Rated 7.8 HIGH (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H), it requires user interaction (UI:R) and local access (AV:L) to exploit. Currently, there is no known public exploit code (Metasploit, Nuclei, ExploitDB) or evidence of active exploitation, and it lacks significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
1.03.00CPE matchmatch criteria
cpe:2.3:a:milkytracker_project:milkytracker:1.03.00:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.38%
Probability of exploitation in next 30 days
EPSS Percentile
30.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0037 is in the 29th percentile among its peer group of 11,621 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (1)

github_advisorypatch availablevia nvd_reference
View patch

References

github.com / milkytracker/MilkyTracker/commit/3a5474f9102cbdc10fbd9e7b1b2c8d3f3f45d91b
PatchThird Party Advisory
github.com / milkytracker/MilkyTracker/issues/275
ExploitIssue TrackingMitigationPatchThird Party Advisory