OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-92948

CRITICAL · CVSS 9.9 EPSS 0.65% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-17 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

Versions of vm2 from 3.9.6 to 3.11.6 are vulnerable to a sandbox escape that allows attackers to execute arbitrary JavaScript in an unrestricted Node.js environment when the node:test builtin is explicitly allowed. This critical vulnerability poses significant risks, particularly for applications relying on Node.js 24 and newer, as it can lead to unauthorized access and control over the host system. Organizations using affected versions of vm2 should prioritize immediate updates to version 3.11.7 or later to mitigate potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-92948
Severity
CRITICAL
CVSS
9.9
EPSS
0.65%
Java

Original NVD Description

vm2 versions >= 3.9.6 and <= 3.11.6 are affected by a NodeVM builtin allowlist bypass that permits a sandbox escape on Node.js 24 and newer when the embedder explicitly allows the node:test builtin (e.g. require: { builtin: ['node:test'] }). On Node.js 24+, module.builtinModules exposes the scheme-only key node:test, which is not covered by vm2's family-based DANGEROUS_BUILTINS protection, so it is stored in the generic host-passthrough loader. Because requireImpl() in lib/setup-node-sandbox.js strips a single 'node:' prefix before the builtin lookup, sandbox code calling require('node:node:test') resolves to the stored node:test key and receives a readonly proxy to the host module. Calls to node:test.run() are forwarded to the host implementation, which spawns a separate Node process for process-isolated test execution and passes through attacker-controlled execArgv values; supplying --eval=<JavaScript> therefore executes arbitrary JavaScript in an unrestricted host Node process outside the NodeVM sandbox. Fixed in vm2 3.11.7.