delight-nashorn-sandbox 0.2.4 and... CVE-2023-26919

- AV AC AU C I A
发布: 2023-04-10
修订: 2023-04-14

delight-nashorn-sandbox 0.2.4 and 0.2.5 is vulnerable to sandbox escape. When allowExitFunctions is set to false, the loadWithNewGlobal function can be used to invoke the exit and quit methods to exit the Java process.

0%
暂无可用Exp或PoC
当前有2条受影响产品信息