CVE-2026-92937
Last modified
CVE-2026-92937 is a critical-severity vulnerability rated 10/10 on the CVSS scale. vm2 3.11.6 is vulnerable to a sandbox escape leading to remote code execution in the host Node.js process. The fix for GHSA-m283-3h24-438v is incomplete: the bridge gate at lib/bridge.js:1624 identity-checks only the direct call target when deciding whether to rebuild/sanitise a rejected host Promise value.
Description
vm2 3.11.6 is vulnerable to a sandbox escape leading to remote code execution in the host Node.js process. The fix for GHSA-m283-3h24-438v is incomplete: the bridge gate at lib/bridge.js:1624 identity-checks only the direct call target when deciding whether to rebuild/sanitise a rejected host Promise value. Registering the rejection handler through Function.prototype.call or .apply indirection (e.g., p.then.call(p, undefined, cb)) makes the intercepted target host Function.prototype.call, so the sanitiser never runs and the raw host error reaches sandbox code with its own properties intact. If an embedder exposes a host-realm Promise to the sandbox (an async host function bridged via the sandbox option, or a NodeVM external module's async method) and that Promise rejects with an Error carrying a non-primitive own property referencing a host object (for example err.detail = process), untrusted code in the sandbox obtains a fully functional proxy to that host object and can execute arbitrary commands with the privileges of the host process (e.g., e.detail.mainModule.require('child_process').execSync(...)). The direct p.then(undefined, cb), bind, and Reflect.apply forms are correctly sanitised. Fixed in vm2 3.11.7.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-92937?
How severe is CVE-2026-92937?
How do I fix CVE-2026-92937?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-92927A vulnerability was found in SourceCodester Drug Recommendat…5.3
- CVE-2026-92932In the MISP sachertortephp library, the Xml::build() static …5.1
- CVE-2026-92933vm2 is a sandbox for running untrusted Node.js code. In vers…5.8
- CVE-2026-92934vm2 before 3.11.8 contains an incomplete fix for Error.cause…9
- CVE-2026-92935vm2 is a sandbox for running untrusted Node.js code. In vers…9
- CVE-2026-92936vm2 versions 3.11.0 through 3.11.6 leak absolute host filesy…5.8
- CVE-2026-92938vm2 versions 3.11.3 through 3.11.6 expose Node.js's host nod…9.9
- CVE-2026-92939vm2 3.11.3 through 3.11.6 exposes the host Node.js crypto mo…9.9
- CVE-2026-9294A vulnerability was identified in Edimax BR-6428NS 1.10. The…8.8
- CVE-2026-92940vm2 versions 3.11.3 through 3.11.6 expose the host process's…10
- CVE-2026-92941vm2 versions from 3.11.3 before 3.11.7 expose the host tls m…10
- CVE-2026-92942vm2 before 3.11.7 (affected versions <= 3.11.6) does not enf…7.5
Are you affected by CVE-2026-92937?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
