Description
vm2 before 3.11.8 contains a sandbox escape vulnerability in NodeVM that allows attackers to access the host __proto__ getter/setter through console._stdout and console._stderr. Attackers can overwrite EventEmitter.prototype.emit and trigger process events to execute code with process context, bypassing code generation restrictions.
Published: 2026-09-17
Score: 10 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

The vulnerability is a sandbox escape in NodeVM that allows code running inside the sandbox to access host prototypes via console._stdout and console._stderr. By overwriting EventEmitter.prototype.emit, an attacker can trigger process events and execute arbitrary code within the process context, bypassing code generation restrictions. The weakness an access control flaw and is categorized as CWE-913.

Affected Systems

The affected product is VM2 provided by patriksimek. All releases before version 3.11.8 are vulnerable, regardless of Node.js version. Vendors or developers using these earlier VM2 releases need to upgrade.

Risk and Exploitability

The CVSS score of 10 indicates extreme severity. While an EPSS value is not available, the lack of listing in the CISA KEV catalog does not diminish the risk; the flaw allows an attacker who can inject code into the sandbox to run code with full process privileges. The most probable attack vector is local: untrusted code executed within a NodeVM can exploit the escape. The high exploitability and potential for widespread impact make urgent remediation essential.

Generated by OpenCVE AI on September 17, 2026 at 21:43 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade vm2 to version 3.11.8 or later.
  • If an upgrade is not possible, avoid using NodeVM to execute untrusted code; alternatively, configure NodeVM to exclude console._stdout and console._stderr or confine prototype access.
  • Implement additional process isolation or use a dedicated runtime with strict resource limits to contain any potential escape.

Generated by OpenCVE AI on September 17, 2026 at 21:43 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-88hf-g992-jg85 vm2: Sandbox Escape (NodeVM)
History

Thu, 17 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
First Time appeared Patriksimek
Patriksimek vm2
Vendors & Products Patriksimek
Patriksimek vm2

Thu, 17 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 17 Sep 2026 14:00:00 +0000

Type Values Removed Values Added
Description vm2 before 3.11.8 contains a sandbox escape vulnerability in NodeVM that allows attackers to access the host __proto__ getter/setter through console._stdout and console._stderr. Attackers can overwrite EventEmitter.prototype.emit and trigger process events to execute code with process context, bypassing code generation restrictions.
Title vm2 before 3.11.8 Sandbox Escape via NodeVM
Weaknesses CWE-913
References
Metrics cvssV3_1

{'score': 10, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H'}

cvssV4_0

{'score': 10, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-09-17T14:23:35.469Z

Reserved: 2026-09-17T12:43:31.527Z

Link: CVE-2026-92955

cve-icon Vulnrichment

Updated: 2026-09-17T14:23:29.133Z

cve-icon NVD

Status : Deferred

Published: 2026-09-17T14:18:01.480

Modified: 2026-09-17T15:17:01.040

Link: CVE-2026-92955

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-17T21:45:16Z

Weaknesses
  • CWE-913

    Improper Control of Dynamically-Managed Code Resources