Vulnerability library
Security checkJuly 06, 2026

@enclave-vm/core is vulnerable to Sandbox Escape

Understand the exposure, see the recommended fix, and check whether your own website has related weaknesses.

High severitynpm@enclave-vm/core

Check your website

Find this and other vulnerabilities with a free scan.

Your scan runs on your computer. No account required.

Description

It is possible to escape the security boundraries set by @enclave-vm/core, which can be used to achieve remote code execution (RCE).

The issue has been fixed in version 2.11.1.


Recommendation

Update the @enclave-vm/core package to the latest compatible version. Followings are version details:

  • Affected version(s): <= 2.10.1
  • Patched version(s): 2.11.1

References

Could your website be exposed too?

SmartScanner can check your website for @enclave-vm/core is vulnerable to Sandbox Escape and gives you actionable findings to investigate.

Start a free scan

Related Issues

See something that needs correcting? Let us knowUpdated July 06, 2026