PT-2026-94327 · Npm+1 · Vm2+1

·

CVE-2026-92956

·

Published

2026-08-25

·

Updated

2026-10-05

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions vm2 versions 3.10.1 through 3.11.6
Description A sandbox escape exists when running on Node.js 26. The issue occurs because WebAssembly.compileStreaming and WebAssembly.instantiateStreaming can produce a raw host-realm Promise that rejects with a host-realm error object. By controlling Symbol.species via Promise.prototype.finally, sandbox code can obtain this raw host error, navigate from the host error constructor to the host Function constructor, and recover the host process object. This allows the attacker to gain host Node.js capabilities, such as access to host modules like fs, within the process running the sandbox. This escape is possible using a default new VM() sandbox and does not require NodeVM, require permissions, host object injection, or any unsafe configuration.
Recommendations Update to version 3.11.7.

Exploit

Fix

Protection Mechanism Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-15022
CVE-2026-92956
GHSA-538Q-XXPG-6H4R
GHSA-WJWH-QQVP-G4P4

Affected Products

Node.Js
Vm2