Sandbox escape vulnerability in vm2, used by nearly 900 NPM packages, allows attackers to bypass security protections and ...
Microsoft’s new warning was spotted by Windows Latest. “In an updated support document, the company has confirmed that the update is indeed crashing some PCs.” This primarily affects commercial PCs.
A critical vm2 Node.js vulnerability (CVE-2026-22709, CVSS 9.8) allows sandbox escape via Promise handler bypass.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results