THREAT OPS › Threat News › [NVD] CVE-2026-82447 (HIGH 8.8) — Skyvern before 1.0.45 contains a sandbox escape vulnerability in TextPromptBlock that renders prompts twice, first through a sandboxed Jinja environment and then through an unsandboxed environment. Attackers can inject malicious Jinja template syntax through workflow parameters o
[NVD] CVE-2026-82447 (HIGH 8.8) — Skyvern before 1.0.45 contains a sandbox escape vulnerability in TextPromptBlock that renders prompts twice, first through a sandboxed Jinja environment and then through an unsandboxed environment. Attackers can inject malicious Jinja template syntax through workflow parameters o
CVE-2026-82447 CVSS: 8.8 HIGH Published: 2026-08-29T13:16:38.643
Skyvern before 1.0.45 contains a sandbox escape vulnerability in TextPromptBlock that renders prompts twice, first through a sandboxed Jinja environment and then through an unsandboxed environment. Attackers can inject malicious Jinja template syntax through workflow parameters or upstream block output to execute arbitrary code with
Indicators of compromise
- CVE-2026-82447cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-82447