VYPR

RubyGems package

kobako

pkg:gem/kobako

Vulnerabilities (1)

  • CVE-2026-55107criAug 18, 2026
    affected >= 0.1.0, < 0.9.1fixed 0.9.1

    ### Summary A guest mruby script running inside the Kobako sandbox can execute arbitrary Ruby in the host process, fully escaping the sandbox. ### Details A host embeds bound "Service" objects that guest scripts call across the wasm boundary through the transport dispatcher. The