CVE-2023-37466Patch(vm2_project / vm2)

LOWCVSS 10.0 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch vm2_project vm2 systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

vm2 is an advanced vm/sandbox for Node.js. The library contains critical security issues and should not be used for production. The maintenance of the project has been discontinued. In vm2 for versions up to 3.9.19, `Promise` handler sanitization can be bypassed with the `@@species` accessor property allowing attackers to escape the sandbox and run arbitrary code, potentially allowing remote code execution inside the context of vm2 sandbox. Version 3.10.0 contains a patch for the issue.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-94

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • vm2

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 7 mentions across 6 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 2 signals
  • Patch or workaround mentioned in 5 signals
  • Technical details provided in 6 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • Peaked 4d ago at 2 mentions (2026-05-04); latest day: 1
  • 7 total mentions across 6 days

Affected systems

Products
vm2

Deep dive

Activity timeline7 mentions / 6d
01122Mentions · 2026-01-30: 1Mentions · 2026-05-04: 2Mentions · 2026-05-07: 1Mentions · 2026-05-11: 1Mentions · 2026-05-25: 1Mentions · 2026-08-27: 1PoC Mentioned / Linked · 2026-05-07: 1PoC Mentioned / Linked · 2026-08-27: 1Patch / Workaround · 2026-01-30: 1Patch / Workaround · 2026-05-04: 1Patch / Workaround · 2026-05-11: 1Patch / Workaround · 2026-05-25: 1Patch / Workaround · 2026-08-27: 1Technical Details · 2026-01-30: 1Technical Details · 2026-05-04: 1Technical Details · 2026-05-07: 1Technical Details · 2026-05-11: 1Technical Details · 2026-05-25: 1Technical Details · 2026-08-27: 101-3005-0405-0705-1105-2508-27
Signal classification3 categories
Patch
342.9%
Disclosure
342.9%
General
114.3%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-01-301
Patch1
2026-05-042
Disclosure1General1
2026-05-071
Disclosure1
2026-05-111
Patch1
2026-05-251
Patch1
2026-08-271
Disclosure1
Full discourse7 posts
  • dbugs@ptdbugs
    Disclosure

    CVE-2026-24120: Yet Another Sandbox Escape in vm2, or a Fundamental Design Problem? An analysis of CVE-2026-24120 in vm2, a sandbox for running JavaScript inside Node.js, has been published. Exploitation allows an attacker to escape the sandbox and execute commands on the host. Versions through 3.10.3 are affected, with the issue patched in 3.10.5. The CVE record the issue as an insufficient fix for CVE-2023-37466, which is related to Promise "Symbol.species". However, the author found that "resetPromiseSpecies", the mechanism responsible for this protection, remained unchanged in version 3.10.5. Instead, the developers strengthened exception handling by replacing "ensureThis()" with "handleException()". A separate patch also blocked "WebAssembly.JSTag", which provided another path for leaking a host-realm exception into sandbox code. The key operation in the PoC is "http://e.name = Symbol()". When "e.stack" is accessed, V8 attempts to convert "name" to a string, causing a "TypeError" in the host realm. Inside an async function, this causes the Promise to be rejected with a host-realm error. Once that object reaches sandbox code, the attacker can use "constructor.constructor" to reach the host "Function", access "process", and execute commands. The author traced five fixes for the same sandbox escape mechanism over 32 months: through different paths, host-realm objects repeatedly became accessible to code inside the sandbox. Just four releases — 3.10.5, 3.11.0, 3.11.1, and 3.11.2 — collectively addressed 18 security advisories. Moreover, one of the subsequent vulnerabilities was introduced by a hardening mechanism added in response to an earlier advisory. The vm2 README itself warns about the fundamental difficulty of building a reliable in-process JavaScript sandbox. The architecture of such a sandbox leaves a broad attack surface for new escape techniques to emerge. PoC: https://github.com/patriksimek/vm2/security/advisories/GHSA-qvjj-29qf-hp7p Article: https://nefariousplan.com/posts/vm2-cve-2026-24120-readme-already-admits #dbugs_attacks

    Post summary

    The article discloses CVE-2026-24120 as a sandbox escape in vm2 that allows command execution, provides a PoC, details the vulnerability mechanism, and notes that the issue was patched in later releases.

    00032764
    3.6K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-24120 vm2 is an open source vm/sandbox for Node.js. Prior to version 3.10.5, the fix for CVE-2023-37466 is insufficient and can be circumvented allowing attackers to write … https://www.cve.org/CVERecord?id=CVE-2026-24120

    Post summary

    The post notes that the vulnerability in vm2 will be resolved by upgrading to v3.10.5, but it provides no concrete exploit code, evidence of active attacks, or detailed mitigation steps beyond the version reference.

    00010197
    57.4K followersView on X
  • TheTechWorldPodcast@TheTechWorldPod
    Patch

    While CVE-2026-22709 has been addressed in vm2 version 3.10.2, it's the latest in a steady stream of sandbox escapes that have plagued the library in recent years. This includes CVE-2022-36067, CVE-2023-29017, CVE-2023-29199, CVE-2023-30547, CVE-2023-32314, CVE-2023-37466, and CVE-2023-37903.

    Post summary

    The post informs readers that CVE‑2026‑22709 has been patched in vm2 v3.10.2, noting it as part of a series of sandbox‑escape vulnerabilities affecting the library.

    10000133
    481 followersView on X
  • DFIR Lab@DFIR_Lab
    Patch

    vm2 is an open source vm/sandbox for Node.js. Prior to version 3.10.5, the fix for CVE-2023-37466 is insufficient and can be circumvented allowing attackers to write code which can escape from the VM2 sandbox and execute arbitrary commands on the host system. This issue has been patched in version 3.10.5.

    Post summary

    CVE-2023-37466 in vm2 enables sandbox escape to arbitrary host command execution, but the vulnerability is fixed in version 3.10.5.

    0000045
    30 followersView on X
  • Bryan@so_sthbryan
    Patch

    Your Node.js sandbox is broken. Patch before your AI agent runs user code. vm2 CVE-2026-24120 (CVSS 9.8): bypass of CVE-2023-37466 lets attackers escape the VM and run host commands. Update to 3.11.2. Your agent's sandbox has a known exploit. https://www.cve.org/CVERecord?id=CVE-2026-24120

    Post summary

    The text warns of a high‑severity vm2 sandbox escape (CVE-2026‑24120) and recommends updating to version 3.11.2, without indicating active exploitation or available PoC.

    00000135
    37 followersView on X
  • DailyCVE@dailycve
    Disclosure

    🔴 (Nodejs vm2), Sandbox Escape via nesting:true bypassing require:false, #CVE-2023-37466 (Critical) https://dailycve.com/nodejs-vm2-sandbox-escape-via-nestingtrue-bypassing-requirefalse-cve-2023-37466-critical/

    Post summary

    The tweet announces a critical Node.js vm2 sandbox escape vulnerability (CVE-2023-37466), detailing how the nesting:true option bypasses require:false, and directs readers to a source for more information.

    0000042
    196 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-24120 vm2 is an open source vm/sandbox for Node.js. Prior to version 3.10.5, the fix for CVE-2023-37466 is insufficient and can be circumvented allowing attackers to write … https://www.cve.org/CVERecord?id=CVE-2026-24120 ----- Traducción: CVE-2026-24120 vm2… http://infoflow.cloud`

    Post summary

    The text announces a new vulnerability in vm2 (CVE‑2026‑24120), highlighting version impact and circumvention of a prior fix, but does not provide PoC, exploit, or patch details.

    0000036
    75 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appvm2_projectvm2-node.js-

Explore more