All versions of package jailed are vulnerable to Sandbox Bypass via an exported alert() method which can access the main application. Exported methods are stored in the application.remote object.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: snyk

Published: 2022-05-01T15:25:26.502204Z

Updated: 2024-09-17T00:45:43.598Z

Reserved: 2022-02-24T00:00:00

Link: CVE-2022-23923

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-05-01T16:15:08.367

Modified: 2022-05-11T15:52:42.883

Link: CVE-2022-23923

cve-icon Redhat

No data.