MB日常[verified]@MB_Daily1Disclosure
The text announces the high‑severity CVE‑2026‑5752 affecting Cohere Terrarium, detailing that it permits code execution and container escape, but does not provide PoC, exploit, or mitigation information.
yousukezan[verified]@yousukezanDisclosure
A newly disclosed CVE‑2026‑5752 in the Python‑based Terrarium sandbox poses a high‑severity sandbox escape that allows root‑privilege code execution via a JavaScript prototype chain flaw.
Nicolas Krassas[verified]@DinosnGeneral
The blog post examines the sandbox escape vulnerabilities in Cohere Terrarium (CVE‑2026‑5752) and OpenAI Codex CLI (CVE‑2025‑59532), providing an overview but no actionable exploits, patches, or evidence of active attacks.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
CVE‑2026‑5752 is actively being exploited to escape Cohere AI's Terrarium sandbox via prototype chain traversal, achieving host root and enabling lateral movement; containment measures are discussed.
The Hacker News@TheHackersNewsDisclosure
Pyodide’s CVE-2026-5752 allows sandbox escape leading to root command execution; the flaw is severe (CVSS 9.3) and remains unpatched.
/r/netsec@_r_netsecGeneral
The post introduces a cross‑CVE analysis of AI code sandbox escape vulnerabilities in Cohere Terrarium (CVE‑2026‑5752) and OpenAI Codex CLI (CVE‑2025‑59532) without providing additional technical or exploit details.
TheCybersecurity.club@TheCyberse46292Disclosure
CVE‑2026‑5752 is a newly disclosed critical vulnerability that allows sandbox escape and root takeover via JavaScript prototype chain exploitation, prompting urgent updates or avoidance of untrusted code.
GdyDigital@Gdy_DigitalDisclosure
A new critical code‑execution flaw (CVE‑2026‑5752) in the Terrarium sandbox has been disclosed, rated 9.3 CVSS, enabling prototype chain traversal for root access, with no evidence yet of active exploitation or available patches.