
[CVE-2026-25142: CRITICAL] JavaScript sandboxing library SandboxJS fixed a vulnerability in version 0.8.27 that could lead to remote code execution by not properly restricting __lookupGetter__.#cve,CVE-2026-25142,#cybersecurity https://cvefind.com/CVE-2026-25142
Post summary
The tweet announces that CVE-2026-25142, a critical remote code execution flaw in SandboxJS, has been patched in version 0.8.27; no PoC, exploit code, or active exploitation is reported.


