Vulnerability CVE-2022-23923


Published: 2022-05-01

Description:
All versions of package jailed are vulnerable to Sandbox Bypass via an exported alert() method which can access the main application. Exported methods are stored in the application.remote object.

 References:
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSBOWER-2441254
https://snyk.io/vuln/SNYK-JS-JAILED-2391490

Copyright 2026, cxsecurity.com

 

Back to Top