PT-2026-48700 · Kanadojo · Kana-Dojo

·

CVE-2026-48546

·

Published

2026-06-11

·

Updated

2026-06-12

CVSS v4.0

8.5

High

VectorAV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions KanaDojo versions prior to 0.1.18
Description A sandbox escape allows remote code execution with full GitHub Actions runner privileges, including access to the AUTOMATION PR TOKEN variable. The issue occurs in the issue-auto-respond.yml workflow due to the explicit passing of the global require() function into a Node.js vm.runInNewContext() sandbox context. An attacker can exploit this by submitting a pull request that modifies messages.cjs to import arbitrary Node.js modules, thereby bypassing sandbox restrictions.
Recommendations Update to version 0.1.18 or later.

Exploit

Fix

Protection Mechanism Failure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-48546

Affected Products

Kana-Dojo