CYBERHAWK / CVE / CVE-2026-48546

CVE-2026-48546

HIGH CVSS 7.3 other

The flaw

KanaDojo before 0.1.18 contains a sandbox escape vulnerability that allows an attacker to execute arbitrary code by exploiting the explicit passing of the global require function into a Node.js vm.runInNewContext() sandbox context in the is

What to do

Review advisory and patch per vendor guidance.

▸ Scan my repo for CVE-2026-48546

References

First seen 2026-06-12 · Tracked by PickBits CyberHawk · Weekly CVE digest