Track vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
10.0
CVE-2023-29199: vm2 sandbox can let attackers run code on host
CVE-2023-29199 · published 10 days ago
Summary
Versions of the vm2 library up through 3.9.15 may allow a malicious user to break out of its protected environment and execute code on the underlying system. This could let an attacker take control of the machine running the sandbox. Update to vm2 version 3.9.16 or later to close the gap.
What to do
- Update GitHub Actions vm2 to version 3.9.16.
- Update vm2 to version 3.9.7-aikido.4.
- Update rootio @rootio/vm2 to version 3.9.7-root.io.4.
- Update vm2 to version 3.9.7-aikido.5.
- Update rootio @rootio/vm2 to version 3.9.7-root.io.5.
- Update vm2 to version 3.9.7-aikido.6.
- Update rootio @rootio/vm2 to version 3.9.7-root.io.6.
- Update vm2_project vm2 to version 3.9.16 or later.
Affected software
| Ecosystem | Vendor | Product | Affected versions |
|---|---|---|---|
| npm | GitHub Actions | vm2 |
< 3.9.16 Fix: upgrade to 3.9.16
|
| – | vm2_project | vm2 |
< 3.9.16 cpe:2.3:a:vm2_project:vm2:*:*:*:*:*:node.js:*:* |
| Root:npm | – | vm2 |
< 3.9.7-aikido.4 < 3.9.7-aikido.5 < 3.9.7-aikido.6 Fix: upgrade to 3.9.7-aikido.4
|
| Root:npm | rootio | @rootio/vm2 |
< 3.9.7-root.io.4 < 3.9.7-root.io.5 < 3.9.7-root.io.6 Fix: upgrade to 3.9.7-root.io.4
|
Original advisory text
CVE-2023-29199 in vm2 - Patched by Root
Root has patched CVE-2023-29199 in the vm2 package for Root:npm. Multiple fixed versions available.
References
- https://github.com/patriksimek/vm2/commit/24c724daa7c09f003e556d7cd1c7a8381cb985... Patch
- https://gist.github.com/leesh3288/f05730165799bf56d70391f3d9ea187c Exploit Third Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2023-29199
- https://github.com/advisories/GHSA-xj72-wvfv-8985
- https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/29xxx/CVE-2023-29199... Vendor Advisory
- https://github.com/patriksimek/vm2/issues/516 Issue Tracking Patch
- https://github.com/patriksimek/vm2/releases/tag/3.9.16 Release Notes
- https://github.com/patriksimek/vm2/security/advisories/GHSA-xj72-wvfv-8985 Vendor Advisory
Internet-facing
3 days
Internal
60 days
- Not known to be exploited
- Can be exploited automatically
- Gives an attacker full control
Severity
10.0
Critical
Type
CWE-913Improper Control of Dynamically-Managed Code Resources
Timeline
Published30 Sep 2026
Updated7 Oct 2026
First seen6 Mar 2026
Track software like this
Free during beta