PT-2026-48700 · Kanadojo · Kana-Dojo
CVSS v4.0
8.5
High
| Vector | AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
KanaDojo versions prior to 0.1.18
Description
A sandbox escape allows remote code execution with full GitHub Actions runner privileges, including access to the
AUTOMATION PR TOKEN variable. The issue occurs in the issue-auto-respond.yml workflow due to the explicit passing of the global require() function into a Node.js vm.runInNewContext() sandbox context. An attacker can exploit this by submitting a pull request that modifies messages.cjs to import arbitrary Node.js modules, thereby bypassing sandbox restrictions.Recommendations
Update to version 0.1.18 or later.
Exploit
Fix
Protection Mechanism Failure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Kana-Dojo