CVE-2024-23682High· 8.2▾ TwilightArtemis Java Test Sandbox versions before 1.8.0 are vulnerable to a sandbox escape when an attacker includes class files in a package that Ares trusts. An attacker can abuse this issue to execute arbitrary Java when a victim executes the…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 45.1 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 14.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.4%
Artemis Java Test Sandbox versions before 1.8.0 are vulnerable to a sandbox escape when an attacker includes class files in a package that Ares trusts. An attacker can abuse this issue to execute arbitrary Java when a victim executes the supposedly sandboxed code.
artemis_java_test_sandbox < 1.8.0Upgrade past the affected range:
artemis_java_test_sandbox 1.8.0Connected by shared product, vendor, weakness, or advisory.
CVE-2024-23683High· 8.2Artemis Java Test Sandbox versions less than 1.7.6 are vulnerable to a sandbox escape when an attacker crafts a special subclass of InvocationTargetException
CVE-2024-23681High· 8.2Artemis Java Test Sandbox versions before 1.11.2 are vulnerable to a sandbox escape when an attacker loads untrusted libraries using System.load or System.loadLibrary
CVE-2026-82964High· 8.8Improper preservation of permissions in the Avast sandbox minifilter driver (aswSnx.sys) on Windows allows a local, low-privileged attacker executing inside the sandbox to escape file isolation and escalate to SYSTEM. When the sandbox…
CVE-2026-92006High· 8.8Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component
CVE-2026-92035Critical· 9.6Sandbox escape due to incorrect boundary conditions in the Graphics component
CVE-2026-92034Critical· 9.1Site isolation issue in the Graphics component