All versions of package jailed are vulnerable to Sandbox Bypass via an exported alert() method which can access the main application. Exported methods are stored in the application.remote object.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: snyk
Published: 2022-05-01T15:25:26.502204Z
Updated: 2024-09-17T00:45:43.598Z
Reserved: 2022-02-24T00:00:00
Link: CVE-2022-23923
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2022-05-01T16:15:08.367
Modified: 2022-05-11T15:52:42.883
Link: CVE-2022-23923
Redhat
No data.