logo

Sandboxie Escape Flaw Allows Attackers to Gain Root Access

ID: 1ea198e9-320d-5a95-8aa9-433c0ac1245b

STIX ID: report--1ea198e9-320d-5a95-8aa9-433c0ac1245b

Feed Name: Cyber Press

Threat Score
75/100

Date Published: 2026-05-11

Date Updated: 2026-05-22

Author: AnuPriya

...
...

Security researchers disclosed multiple critical vulnerabilities in Sandboxie/Sandboxie-Plus (notably CVE-2026-34459 and CVE-2026-34458) that enable local sandbox escape to SYSTEM privileges via a stack-based buffer overflow and configuration injection, plus additional DoS and cryptographic weaknesses; vendors released patches (recommended update: 1.17.5).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.