VYPR
High severity7.2NVD Advisory· Published Apr 10, 2023· Updated Jun 17, 2026

CVE-2023-26919

CVE-2023-26919

Description

delight-nashorn-sandbox 0.2.4 and 0.2.5 is vulnerable to sandbox escape. When allowExitFunctions is set to false, the loadWithNewGlobal function can be used to invoke the exit and quit methods to exit the Java process.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Range: 0.2.4, 0.2.5
  • cpe:2.3:a:javadelight:nashorn_sandbox:0.2.4:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:javadelight:nashorn_sandbox:0.2.4:*:*:*:*:*:*:*
    • cpe:2.3:a:javadelight:nashorn_sandbox:0.2.5:*:*:*:*:*:*:*
  • delight-nashorn-sandbox/delight-nashorn-sandboxdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.