{"id":"CVE-2026-92960","published":"2026-09-17T14:18:02.290","lastModified":"2026-09-17T15:17:01.170","description":"vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: ['*'] configuration, allowing sandbox code to read host process identity and network topology. Attackers can invoke dns.setServers() to hijack the host process DNS resolver globally, redirecting all subsequent host DNS queries through an attacker-controlled resolver.","cvssScore":10,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L","cwes":["CWE-200"],"vendors":[],"products":[],"references":[{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-m5w8-4gq2-6f8x","tags":[]},{"url":"https://www.vulncheck.com/advisories/vm2-before-3.11.6-process-wide-state-exposure-via-os-and-dns","tags":[]},{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-m5w8-4gq2-6f8x","tags":[]}],"exploitRefs":[{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-m5w8-4gq2-6f8x","tags":[]},{"url":"https://github.com/patriksimek/vm2/security/advisories/GHSA-m5w8-4gq2-6f8x","tags":[]}],"hasPoc":true,"ai":{"summary":"This flaw allows attackers to read host process identity and network topology, and hijack the host process DNS resolver, leading to potential data exfiltration and DNS spoofing.","exploitability":"Exploitation is relatively straightforward given the preconditions of having access to the sandbox code and the 'builtin: ['*']' configuration.","blast_radius":"If exploited, the impact could be severe, including unauthorized access to sensitive information and control over DNS queries, potentially leading to broader network compromise.","remediation":"Upgrade to vm2 version 3.11.6 or later.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["rce","dns-spoofing","data-exfiltration","vm2"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-27T08:55:25.568Z"}}