Vulnerability GHSA-88hf-g992-jg85
Critical
CRITICAL RISK
CVSS Score: 10.0
Score Range: 9.0–10.0
Critical severity vulnerabilities (CVSS 9.0–10.0). These represent the highest impact issues.
8 hours ago
October 05, 2026 at 10:47 PM UTC
vm2: Sandbox Escape (NodeVM)
0.1.0 - 3.11.7
0.1.0 - 3.11.7
Summary
vm2: Sandbox Escape (NodeVM)
Details
Summary
It being possible to obtain the host __proto__ getter/setter, has been used in many reports:
- https://github.com/patriksimek/vm2/security/advisories/GHSA-vwrp-x96c-mhwq
- https://github.com/patriksimek/vm2/security/advisories/GHSA-v6mx-mf47-r5wg
- https://github.com/patriksimek/vm2/security/advisories/GHSA-grj5-jjm8-h35p
- https://github.com/patriksimek/vm2/security/advisories/GHSA-47x8-96vw-5wg6
Yet it was never patched...
Related Vulnerabilities
Other vulnerabilities affecting the same packages
Critical
7 hours ago
vm2: NodeVM custom resolution bypasses external path boundaries
0.1.0 - 3.12.1 GHSA-5h3f-q97h-ccvc
0.1.0 - 3.12.1 GHSA-5h3f-q97h-ccvc
High Risk
8 hours ago
vm2: Host Promise rejection from an exposed constructor can terminate the vm2 host process
0.1.0 - 3.12.1 GHSA-2v2p-6j97-cjg9
0.1.0 - 3.12.1 GHSA-2v2p-6j97-cjg9
Critical
8 hours ago
vm2: NodeVM zlib Buffers expose pooled host memory across the VM boundary
0.1.0 - 3.12.1 GHSA-489w-w794-jq94
0.1.0 - 3.12.1 GHSA-489w-w794-jq94
High Risk
8 hours ago
vm2: `allowAsync: false` can be bypassed through Promise thenable assimilation in VM and NodeVM
0.1.0 - 3.11.7 GHSA-f8gf-w286-fmq2
0.1.0 - 3.11.7 GHSA-f8gf-w286-fmq2
High Risk
8 hours ago
vm2: Host-returned Promise rejection can bypass vm2's unhandled-rejection hardening and terminate the host process
3.10.0 - 3.11.7 GHSA-gjq8-xm47-88rc
3.10.0 - 3.11.7 GHSA-gjq8-xm47-88rc
Impacted packages
Timeline
Published
8 hours ago
October 05, 2026 at 10:47 PM UTC
Fixed (3.11.8)
1 month ago
August 27, 2026 at 08:00 PM UTC
Last Modified
8 hours ago
October 05, 2026 at 11:00 PM UTC