CVE-2026-92954 | patriksimek vm2 up to 3.11.7 Bridge lib/setup-sandbox.js events.once return value

SecurityVulns

A vulnerability was found in patriksimek vm2 up to 3.11.7. It has been classified as problematic. This vulnerability affects the function events.once of the file lib/setup-sandbox.js of the component Bridge. This manipulation causes unchecked return value.

This vulnerability appears as CVE-2026-92954. The attack may be initiated remotely. There is no available exploit.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More