CVE-2026-47209General

LOWCVSS 8.6 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

vm2 is an open source vm/sandbox for Node.js. Prior to version 3.11.4, the BaseHandler.set trap in bridge.js (line 1231) ignores the receiver parameter and unconditionally writes to the host target object. Per the Proxy set trap specification, when receiver !== proxy (e.g., when a child object inherits from the proxy via Object.create), the property assignment should create an own property on the receiver, not on the proxy target. The current implementation always calls otherReflectSet(object, key, value) against the host target, causing all inherited property writes to leak through to the host object. This bug provides an alternative attack vector for writing dangerous cross-realm Symbol keys (e.g., nodejs.util.promisify.custom) to host objects, bypassing any future per-trap isDangerousCrossRealmSymbol guard on the direct set path. This issue has been patched in version 3.11.4.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-693

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-05-19); latest day: 1
  • 3 total mentions across 3 days

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-05-19: 1Mentions · 2026-06-12: 1Mentions · 2026-06-13: 1PoC Mentioned / Linked · 2026-05-19: 1Patch / Workaround · 2026-06-13: 1Technical Details · 2026-06-12: 1Technical Details · 2026-06-13: 105-1906-1206-13
Signal classification3 categories
General
133.3%
Disclosure
133.3%
Patch
133.3%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-05-191
General1
2026-06-121
Disclosure1
2026-06-131
Patch1
Full discourse3 posts
  • 秋风@q1uf3ng
    General

    vm2 cve*3 1 Critical10/ 10 2 high CVE-2026-47137 CVE-2026-47209 CVE-2026-47135 https://t.co/mVLkWf7QCs

    Post summary

    The tweet lists three recently disclosed CVE identifiers and provides a single URL, but offers no additional technical, exploitation, or remediation details.

    03054226.8K
    2.4K followersView on X
  • DFIR Lab@DFIR_Lab
    Patch

    🚨 HIGH: CVE-2026-47209 in vm2 Node.js sandbox (CVSS 8.6). Proxy handler flaw allows cross-realm property writes to host objects, bypassing security isolation. Patch to v3.11.4+ immediately. #CVE #PatchNow #NodeJS https://t.co/WqgIpNoi82

    Post summary

    The tweet alerts about a high‑severity CVE-2026-47209 in the vm2 Node.js sandbox, detailing a proxy handler flaw that permits cross‑realm property writes and urges immediate patching to v3.11.4+.

    0000029
    44 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-47209 Privilege Escalation via Proxy Set Trap in vm2 Before Version 3.11.4 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-47209

    Post summary

    The content announces CVE‑2026‑47209 as a privilege escalation flaw in vm2 versions prior to 3.11.4, providing technical details without mentioning PoC, patches, or active exploitation.

    0000030
    4.0K followersView on X

Explore more