CVE-2026-43998
HIGH SEVERITYCVSS Score & Metrics
Base Score
8.5 / 10
Vulnerability Description
vm2 has a NodeVM require.root bypass via symlink traversal that allows sandbox escape
Vulnerability Details
Published Date
Last Modified
Source
GitHub
Vendor
npm
Product
vm2
Discussion (0)
Add Comment
No comments yet. Be the first!