CVE-2026-92962 | patriksimek vm2 up to 3.11.3 Stack Trace Preparation lib/setup-sandbox.js defaultSandboxPrepareStackTrace information disclosure
A vulnerability classified as problematic has been found in patriksimek vm2 up to 3.11.3. This affects the function defaultSandboxPrepareStackTrace of the file lib/setup-sandbox.js of the component Stack Trace Preparation. This manipulation causes information disclosure.
This vulnerability is tracked as CVE-2026-92962. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More