Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-44006

Опубликовано: 13 мая 2026
Источник: redhat
CVSS3: 10

Описание

vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.0, It is possible to reach BaseHandler.getPrototypeOf, which can be used to get arbitrary prototypes. This vulnerability is fixed in 3.11.0.

A flaw was found in vm2 (before 3.11.0). Sandboxed code can reach BaseHandler.getPrototypeOf to obtain arbitrary prototypes, enabling sandbox escape and arbitrary code execution. Fixed in 3.11.0.

Отчет

vm2 is vulnerable to sandbox escape via unrestricted access to BaseHandler.getPrototypeOf, allowing retrieval of arbitrary prototypes and host code execution. A remote unauthenticated attacker who can submit sandboxed code may escape the sandbox. Fixed in vm2 3.11.0.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Developer Hubrhdh/rhdh-hub-rhel9Not affected
Red Hat Ansible Automation Platform 2.1ansible-automation-platform/automation-portalFixedRHSA-2026:5085005.08.2026

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-914
https://bugzilla.redhat.com/show_bug.cgi?id=2477200vm2: vm2: Sandbox escape via arbitrary prototype access leading to arbitrary code execution

10 Critical

CVSS3

Связанные уязвимости

CVSS3: 10
nvd
3 месяца назад

vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.0, It is possible to reach BaseHandler.getPrototypeOf, which can be used to get arbitrary prototypes. This vulnerability is fixed in 3.11.0.

CVSS3: 10
github
3 месяца назад

vm2 has a Sandbox Escape Vulnerability

CVSS3: 10
fstec
3 месяца назад

Уязвимость функции BaseHandler.getPrototypeOf() библиотеки vm2 пакетного менеджера NPM, позволяющая нарушителю обойти защитный механизм песочницы и выполнить произвольный код

10 Critical

CVSS3