External risk intelligence

vm2 Sandbox Bypass Allows DNS Hijacking and Host Identity Exposure

CVE advisorySeverity: CRITICAL (CVSS 10.0)

CVE-2026-92960

The vulnerability exists in a sandboxing library (vm2) designed for use within applications to execute untrusted code. It is a developer-oriented dependency integrated into software build-time or runtime logic, not a standalone network-facing product, service, or appliance. Therefore, it lacks direct public internet exposure.

Information Disclosure

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

External exposure likelihood

Horizon Alert

Summary of the vulnerability and why it matters

A vulnerability has been identified in the vm2 sandboxing library that could allow malicious code to gain access to sensitive system information and redirect network traffic. This issue arises from an incomplete restriction of certain built-in functions, potentially enabling attackers to compromise the host process's DNS resolution.

  • Code can access system details.
  • Network traffic can be redirected.
  • Confirm relevance and exposure.

Attack Path

How an attacker could exploit the issue

An attacker can leverage this vulnerability by introducing code into a sandboxed environment that is designed to execute untrusted scripts. This sandboxed code can then interact with the host system's DNS resolver, redirecting all network traffic to a server controlled by the attacker.

  • No prior access is needed.
  • Untrusted code execution triggers the issue.
  • Potential for widespread DNS hijacking.

Live Threat

Current exploitation, exposure, and threat context

When supported by the advisory, a sandboxed environment could execute code that exposes the host process's identity and network configuration, potentially allowing an attacker to redirect DNS queries globally through a malicious resolver.

  • Host process identity and network topology.
  • Executing code within the sandbox.
  • Global DNS query redirection.

Operational Fix

Recommended remediation, mitigation, and detection steps

The vm2 library's bypass of sandbox restrictions for OS and DNS built-ins indicates a critical vulnerability requiring immediate attention. This issue likely impacts teams responsible for application development and the security of code execution environments. The first practical move is to identify all instances of vm2, assess their reachability and business criticality, and then confirm the accountable owner for remediation planning.

  • Application owners should own the issue.
  • Verify sandbox configurations and reachability.
  • Plan remediation based on risk assessment.

Supplementary metadata

Validate whether this threat affects your internet-facing exposure.

Halo Threat Intelligence helps prioritize remediation with Halo Surface Signal and H/A/L/O context. Start exposure validation with a free external attack surface trial.

Frequently asked questions

What is the vm2 library and how is it used?

vm2 is a JavaScript sandboxing library used by developers to run untrusted code safely within a Node.js application. It creates an isolated environment to prevent the executed script from accessing the host system's resources, such as the file system or process information. Developers typically use it in platforms that process user-submitted scripts or plugins, aiming to contain potential malicious activity while still allowing those scripts to execute logic within the application's runtime.

What does CWE-200 mean for CVE-2026-92960?

CWE-200 refers to the exposure of sensitive information. In the context of CVE-2026-92960, this means the sandbox fails to hide system details it should have kept private. Because the library improperly restricts access to certain built-in functions, code running inside the sandbox can 'peek' at the host system's identity and network layout. This bypass effectively breaks the security boundary that the sandbox was designed to enforce.

How does an attacker trigger this vulnerability?

An attacker triggers this by placing malicious code within the sandboxed environment. If the sandbox is configured to allow certain built-in functions, the attacker can use them to manipulate the host process. Note that this does not require prior special access to the server; it simply requires the application to execute the attacker's script. If the application is not configured to allow these specific built-in functions, the bypass cannot occur.

Is my application at risk according to Halo Surface Signal?

Halo Surface Signal notes that vm2 is a developer-oriented dependency integrated into software, not a standalone network-facing appliance. Because it lacks direct public internet exposure, it is considered very unlikely to be reachable as a direct entry point from the internet. You should focus on internal applications where your team uses vm2 to process untrusted scripts, as that is where the sandbox boundary is critical.

How do I respond to this vm2 vulnerability?

Start by identifying all applications in your environment that include vm2 as a dependency. Once you have a list, determine which of these services actually execute untrusted user code. Prioritize updating the library to version 3.11.6 or later, which contains the necessary restrictions. If an immediate update is not possible, review your sandbox configuration to ensure it does not explicitly enable the vulnerable built-in functions.

References