CNNVD-202601-2343 Information

CNNVD ID

CNNVD-202601-2343

CVE-2026-22686

  • CNNVD Published: 2026-01-14

Description (Chinese)

Enclave是AgentFront开源的一个沙箱软件。 Enclave 2.7.0之前版本存在安全漏洞,该漏洞源于沙盒逃逸,可能导致在主机Node.js运行时中执行任意代码。

Description (English)

Enclave is an Agent Front open-source sandbox software. There was a security loophole in the previous version of Enclave 2.7.0, which originated in the escape of the sandbox and could lead to the implementation of any code in the operation of the host Node.js.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

AgentFront

Published

2026-01-14

Last Modified

2026-02-24

References

https://github.com/agentfront/enclave/security/advisories/GHSA-7qm7-455j-5p63 https://github.com/agentfront/enclave/commit/ed8bc438b2cd6e6f0b5f2de321e5be6f0169b5a1 https://access.redhat.com/security/cve/cve-2026-22686

Patch

https://github.com/agentfront/enclave/releases

Share on: