Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

CVE-2026-47213— BoxLite: Timeout Bypass Vulnerability

CVSS 6.5 · Medium EPSS 0.42% · P33

Affected Version Matrix 1

VendorProductVersion RangeStatus
boxlite-aiboxlite<= 0.8.2affected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-47213

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
BoxLite: Timeout Bypass Vulnerability
Source: NVD (National Vulnerability Database)
Vulnerability Description
Boxlite is a sandbox service that allows users to create lightweight virtual machines (Boxes) and launch OCI containers within them to run untrusted code. In versions 0.8.2 and prior, Boxlite allows users to configure a timeout for services running inside the virtual machine. When the timeout is triggered, Boxlite sends a signal to kill the process. However, instead of using the uncatchable SIGKILL signal, Boxlite uses the catchable SIGALRM signal. Malicious code running inside the sandbox can exploit this vulnerability to continue running after the timeout is triggered, leading to resource exhaustion within the virtual machine and affecting the availability of the Boxlite service. This issue has been patched via commit 28159fc.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
不恰当的资源关闭或释放
Source: NVD (National Vulnerability Database)
Vulnerability Title
BoxLite 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
BoxLite是BoxLite开源的一个嵌入式微虚拟机运行时,为AI代理和代码执行场景提供硬件隔离的安全沙箱能力。 BoxLite 0.8.2及之前版本存在安全漏洞,该漏洞源于使用可捕获的SIGALRM信号而非不可捕获的SIGKILL信号终止进程,恶意代码可在超时后继续运行,导致资源耗尽。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
boxlite-aiboxlite <= 0.8.2 -

II. Public POCs for CVE-2026-47213

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-47213

登录查看更多情报信息。

Patches & Fixes for CVE-2026-47213 (1)

Vendor Advisories for CVE-2026-47213 (1)

Same Patch Batch · boxlite-ai · 2026-06-10 · 3 CVEs total

CVE-2026-4669510.0 CRITICALBoxLite: Permission Bypass in boxlite Allows Modification of Read-Only Files
CVE-2026-467039.6 CRITICALBoxLite: Path Traversal Vulnerability in boxlite Leads to Arbitrary File Write on the Host

IV. Related Vulnerabilities

V. Comments for CVE-2026-47213

No comments yet


Leave a comment