{"id":"GHSA-gg6f-mhqm-f7gp","title":"Duplicate Advisory: Sandbox Escape (NodeVM)","summary":"Duplicate Advisory: Sandbox Escape (NodeVM)","severity":"critical","cvss":10,"cwe":["CWE-913"],"vendor":"vm2","product":"vm2","ecosystem":"npm","affected":["vm2 <= 3.11.7"],"published":"2026-09-17","updated":"2026-10-05","sourceUpdated":"2026-10-05T22:47:00Z","source":"GHSA","sourceUrl":"https://github.com/advisories/GHSA-gg6f-mhqm-f7gp","references":[{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-88hf-g992-jg85"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-92955"},{"url":"https://www.vulncheck.com/advisories/vm2-before-3.11.8-sandbox-escape-via-nodevm"},{"url":"https://github.com/advisories/GHSA-gg6f-mhqm-f7gp"}],"tags":["ghsa","npm"],"ingestedAt":"2026-10-05T23:36:21.177Z","slug":"GHSA-gg6f-mhqm-f7gp","body":"## Overview\n\n## Duplicate Advisory\n\nThis advisory has been withdrawn because it is a duplicate of GHSA-88hf-g992-jg85. This link is maintained to preserve external references.\n\n## Original Description\nvm2 before 3.11.8 contains a sandbox escape vulnerability in NodeVM that allows attackers to access the host __proto__ getter/setter through console._stdout and console._stderr. Attackers can overwrite EventEmitter.prototype.emit and trigger process events to execute code with process context, bypassing code generation restrictions.\n\n## Affected packages\n\n- `vm2 <= 3.11.7`\n\n## Remediation\n\nRefer to the advisory for the patched release.","depth":"midnight","depthScore":55,"depthScoreParts":{"impact":55,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}