vm2 is vulnerable to Sandbox Escape
90
Critical Risk
The exception sanitizer that redacts host references from errors thrown out of the sandbox short-circuits when it revisits an object already seen in the same traversal. For a host wrapped AggregateError carrier, the revisit path returns the raw host object instead of the sanitized copy. Sandboxed code uses this to obtain a live host reference from a caught error and execute arbitrary commands on the host. The fix adds two-phase sanitization with cycle memoization and suppressed error carriers so raw host objects are no longer returned.
You are affected if you are using a version that falls within the vulnerable range and you execute untrusted JavaScript in a NodeVM sandbox.
vm2 is vulnerable to Sandbox Escape in versions 0.0.1 - 3.11.7.
Upgrade the vm2 library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.