CVE-2026-92957 | patriksimek vm2 up to 3.11.6 Require Policy require builtin sandbox

SecurityVulns

A vulnerability was found in patriksimek vm2 up to 3.11.6 and classified as critical. This affects the function require of the component Require Policy. The manipulation of the argument builtin results in sandbox issue.

This vulnerability is reported as CVE-2026-92957. The attack can be launched remotely. No exploit exists.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More