Critical isolated-vm Flaw Lets Attackers Escape Sandbox and Hijack Host Control Flow

A critical vulnerability has been discovered in the widely used Node.js sandboxing library, isolated-vm. This flaw could potentially allow untrusted JavaScript to escape its V8 isolate and hijack control flow in the host process. The issue is tracked as GHSA-864f-rcv7-6rh4 and is awaiting CVE assignment. It affects isolated-vm versions before 7.0.1 and 6.2.0. Researchers have […]

This article has been indexed from GBHackers Security | #1 Globally Trusted Cyber Security News Platform

Read the original article: