CVE-2026-92958 | patriksimek vm2 up to 3.11.6 Builtin Module Denylist lib/builtin.js fsp.writeFile sandbox
A vulnerability identified as problematic has been detected in patriksimek vm2 up to 3.11.6. This issue affects the function fsp.writeFile of the file lib/builtin.js of the component Builtin Module Denylist. Performing a manipulation results in sandbox issue.
This vulnerability was named CVE-2026-92958. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More