The vm2 sandbox component of the open-source JavaScript runtime environment Node.js is vulnerable with certain settings.
Proxima is a universal custom UI that works with almost any script executor. There's no need to be locked into using the UI of the executor you're using. Now, you can use the same familiar, ...
CVE-2026-44009 (CVSS score: 9.8) - A vulnerability that allows sandbox escape via a null proto exception and permits an ...
Thirteen critical vulnerabilities have been found in the vm2 JavaScript sandbox package that could allow an attacker’s code ...
A critical vulnerability in the popular Node.js sandboxing library vm2 allows escaping the sandbox and executing arbitrary ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results