MaxKB Privilege Escalation Vulnerability via Sandbox Bypass

Vulnerability

A vulnerability in MaxKB versions through 2.3.1 allows an attacker to escape the sandbox environment in the tool module, leading to unauthorized privilege escalation. This issue arises under certain concurrent conditions.

Impact

Exploitation of this vulnerability allows for privilege escalation by escaping the sandbox environment, potentially leading to unauthorized access or actions within the application.

Remediation

Users can upgrade to MaxKB version 2.4.0 to address this vulnerability.

Added: Dec 11, 2025, 10:20 PM
Updated: Dec 11, 2025, 10:20 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
5.5
remediation
7.7
relevance
1.4
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.