Critical SandboxJS Escape Vulnerability Enables Host Takeover

A critical security flaw has been found in SandboxJS, a widely used JavaScript sandboxing library available on npm. The vulnerability allows attackers to break out of the sandbox entirely and run any code they want directly on the host system. Tracked as CVE-2026-43898, it carries a maximum severity score of 10.0, which is as serious […]

The post Critical SandboxJS Escape Vulnerability Enables Host Takeover appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: