THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-cfcw-xp6x-25gj (critical) — vm2: Sandbox Breakout Using Dangerous Host Proto Mutators

[GHSA] GHSA-cfcw-xp6x-25gj (critical) — vm2: Sandbox Breakout Using Dangerous Host Proto Mutators

medgithub_advisoriesPublished 2026-08-17

GHSA-cfcw-xp6x-25gj Severity: critical CVE: CVE-2026-47698

vm2: Sandbox Breakout Using Dangerous Host Proto Mutators

### Summary

VM2 suffers from a sandbox breakout vulnerability. This allows attackers to write code which can escape from the VM2 sandbox and execute arbitrary commands on the host system.

### Details

The fix for https://github.com/patriksimek/vm2/security/advisories/GHSA-v6mx-m

Indicators of compromise

Original source: https://github.com/advisories/GHSA-cfcw-xp6x-25gj