Description
vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: ['*'] configuration, allowing sandbox code to read host process identity and network topology. Attackers can invoke dns.setServers() to hijack the host process DNS resolver globally, redirecting all subsequent host DNS queries through an attacker-controlled resolver.
Published: 2026-09-17
Score: 10 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Information Disclosure & DNS Hijacking
Action: Immediate Patch
AI Analysis

Impact

vm2 prior to 3.11.6 allows sandbox code configured with the builtins wildcard to access the host's operating system and DNS modules. This omission of access controls leads to information disclosure of host process identity and network topology, while also permitting attackers to globally change the host DNS resolver via dns.setServers(). The result is a combination of confidentiality compromise and potential denial or manipulation of network services.

Affected Systems

The vulnerability affects the vm2 library developed by patriksimek. All releases earlier than 3.11.6 are impacted; users should verify the version they are running and update if necessary.

Risk and Exploitability

The CVSS score of 10 indicates critical severity. Although the EPSS score is not available, the absence of a listed KEV status suggests no confirmed public exploits yet. The likely attack vector is a sandbox developer or a compromised sandboxed script that is constructed with the broad '*'-builtins configuration. An attacker in such a position can read sensitive host information and hijack DNS resolution, resulting in potential data exfiltration or redirection attacks.

Generated by OpenCVE AI on September 17, 2026 at 22:05 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade vm2 to version 3.11.6 or later
  • Avoid using the '*'-builtins configuration; explicitly whitelist only the builtins required for your sandbox
  • If immediate upgrade is not feasible, constrain the vm2 sandbox to exclude the os and dns modules by specifying an empty or restricted builtins list

Generated by OpenCVE AI on September 17, 2026 at 22:05 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 17 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
First Time appeared Patriksimek
Patriksimek vm2
Vendors & Products Patriksimek
Patriksimek vm2

Thu, 17 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 17 Sep 2026 14:00:00 +0000

Type Values Removed Values Added
Description vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: ['*'] configuration, allowing sandbox code to read host process identity and network topology. Attackers can invoke dns.setServers() to hijack the host process DNS resolver globally, redirecting all subsequent host DNS queries through an attacker-controlled resolver.
Title vm2 before 3.11.6 Process-wide State Exposure via os and dns
Weaknesses CWE-200
References
Metrics cvssV3_1

{'score': 10, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L'}

cvssV4_0

{'score': 10, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:H/SI:H/SA:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-09-17T14:22:01.645Z

Reserved: 2026-09-17T12:43:31.527Z

Link: CVE-2026-92960

cve-icon Vulnrichment

Updated: 2026-09-17T14:21:51.551Z

cve-icon NVD

Status : Deferred

Published: 2026-09-17T14:18:02.290

Modified: 2026-09-17T15:17:01.170

Link: CVE-2026-92960

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-17T22:15:14Z

Weaknesses
  • CWE-200

    Exposure of Sensitive Information to an Unauthorized Actor