CVE-2026-92945 | patriksimek vm2 up to 3.11.6 Module Allowlist isPathAllowedForModule comparison
A vulnerability, which was classified as critical, was found in patriksimek vm2 up to 3.11.6. This affects the function isPathAllowedForModule of the component Module Allowlist. Such manipulation leads to incorrect comparison.
This vulnerability is documented as CVE-2026-92945. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More