Vulnerabilities/

@enclave-vm/core is vulnerable to Sandbox Escape

Severity:
High

Description

It is possible to escape the security boundraries set by @enclave-vm/core, which can be used to achieve remote code execution (RCE).

The issue has been fixed in version 2.11.1.


Recommendation

Update the @enclave-vm/core package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@enclave-vm/core
Anything's wrong? Let us know Last updated on February 25, 2026