{"schema_version":1,"title":"Sandboxie-Plus Sandboxie vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 9 vulnerabilities in Sandboxie-Plus Sandboxie: 0 in the last 7 days and 1 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-45313, was published on 15 July 2026.","url":"https://junglewise.ai/threats/technologies/sandboxie","json_url":"https://junglewise.ai/threats/technologies/sandboxie.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/sandboxie","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":7,"all_time":9,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":1,"last_365_days":9},"latest":[{"cve":"CVE-2026-45313","cvss":7.7,"slug":"cve-2026-45313-sandboxie-plus-sandbox-escape-via-apc-injection-in-guiserver","title":"Sandboxie-Plus sandbox escape via APC injection in GuiServer","severity":"high","exploited":false,"published_at":"2026-07-15T22:16:48.873+00:00","url":"https://junglewise.ai/threats/cve-2026-45313-sandboxie-plus-sandbox-escape-via-apc-injection-in-guiserver"},{"cve":"CVE-2026-34596","cvss":7,"epss":0.0011,"slug":"cve-2026-34596-sandboxie-plus-privilege-escalation-via-toctou-in-updutil","title":"Sandboxie-Plus privilege escalation via TOCTOU in UpdUtil","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:38.08+00:00","url":"https://junglewise.ai/threats/cve-2026-34596-sandboxie-plus-privilege-escalation-via-toctou-in-updutil"},{"cve":"CVE-2026-34527","cvss":5.3,"epss":0.0009,"slug":"cve-2026-34527-sandboxie-plus-entropy-loss-in-editpassword-hashing","title":"Sandboxie-Plus entropy loss in EditPassword hashing","severity":"medium","exploited":false,"published_at":"2026-05-05T20:16:37.93+00:00","url":"https://junglewise.ai/threats/cve-2026-34527-sandboxie-plus-entropy-loss-in-editpassword-hashing"},{"cve":"CVE-2026-34464","cvss":8.8,"epss":0.0017,"slug":"cve-2026-34464-sandboxie-plus-stack-overflow-in-namedpipeserver-openhandler","title":"Sandboxie-Plus stack overflow in NamedPipeServer OpenHandler","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.773+00:00","url":"https://junglewise.ai/threats/cve-2026-34464-sandboxie-plus-stack-overflow-in-namedpipeserver-openhandler"},{"cve":"CVE-2026-34462","cvss":7.8,"epss":0.0017,"slug":"cve-2026-34462-sandboxie-plus-stack-buffer-overflow-in-processserver","title":"Sandboxie-Plus stack buffer overflow in ProcessServer","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.61+00:00","url":"https://junglewise.ai/threats/cve-2026-34462-sandboxie-plus-stack-buffer-overflow-in-processserver"},{"cve":"CVE-2026-34461","cvss":7.8,"epss":0.0017,"slug":"cve-2026-34461-sandboxie-plus-stack-buffer-overflow-in-sbieiniserver-runsbiectrl","title":"Sandboxie-Plus stack buffer overflow in SbieIniServer RunSbieCtrl","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.46+00:00","url":"https://junglewise.ai/threats/cve-2026-34461-sandboxie-plus-stack-buffer-overflow-in-sbieiniserver-runsbiectrl"},{"cve":"CVE-2026-34459","cvss":8.8,"epss":0.0014,"slug":"cve-2026-34459-sandboxie-plus-sandbox-escape-and-privilege-escalation-in-sbiesvc","title":"Sandboxie-Plus Sandbox Escape and Privilege Escalation in SbieSvc","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.317+00:00","url":"https://junglewise.ai/threats/cve-2026-34459-sandboxie-plus-sandbox-escape-and-privilege-escalation-in-sbiesvc"},{"cve":"CVE-2026-34458","cvss":8.8,"epss":0.0025,"slug":"cve-2026-34458-sandboxie-plus-ini-injection-and-privilege-escalation","title":"Sandboxie-Plus INI injection and privilege escalation","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.163+00:00","url":"https://junglewise.ai/threats/cve-2026-34458-sandboxie-plus-ini-injection-and-privilege-escalation"},{"cve":"CVE-2026-32603","cvss":6.5,"epss":0.0015,"slug":"cve-2026-32603-sandboxie-kernel-driver-denial-of-service-via-malformed-ioctl","title":"Sandboxie kernel driver denial of service via malformed IOCTL","severity":"medium","exploited":false,"published_at":"2026-05-05T20:16:35.54+00:00","url":"https://junglewise.ai/threats/cve-2026-32603-sandboxie-kernel-driver-denial-of-service-via-malformed-ioctl"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Sandboxie-Plus","slug":"sandboxie-plus","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/sandboxie-plus"}],"technology":{"hub":true,"name":"Sandboxie-Plus Sandboxie","slug":"sandboxie","vendor":{"name":"Sandboxie-Plus","slug":"sandboxie-plus","url":"https://junglewise.ai/threats/vendors/sandboxie-plus"},"aliases":[],"category":"application","homepage":"https://sandboxie-plus.com/","repo_url":"https://github.com/sandboxie-plus/Sandboxie-Plus","description":"A sandbox-based isolation software that runs applications in a controlled environment to prevent permanent changes to the underlying system.","url":"https://junglewise.ai/threats/technologies/sandboxie"},"most_severe":[{"cve":"CVE-2026-34458","cvss":8.8,"epss":0.0025,"slug":"cve-2026-34458-sandboxie-plus-ini-injection-and-privilege-escalation","title":"Sandboxie-Plus INI injection and privilege escalation","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.163+00:00","url":"https://junglewise.ai/threats/cve-2026-34458-sandboxie-plus-ini-injection-and-privilege-escalation"},{"cve":"CVE-2026-34464","cvss":8.8,"epss":0.0017,"slug":"cve-2026-34464-sandboxie-plus-stack-overflow-in-namedpipeserver-openhandler","title":"Sandboxie-Plus stack overflow in NamedPipeServer OpenHandler","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.773+00:00","url":"https://junglewise.ai/threats/cve-2026-34464-sandboxie-plus-stack-overflow-in-namedpipeserver-openhandler"},{"cve":"CVE-2026-34459","cvss":8.8,"epss":0.0014,"slug":"cve-2026-34459-sandboxie-plus-sandbox-escape-and-privilege-escalation-in-sbiesvc","title":"Sandboxie-Plus Sandbox Escape and Privilege Escalation in SbieSvc","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.317+00:00","url":"https://junglewise.ai/threats/cve-2026-34459-sandboxie-plus-sandbox-escape-and-privilege-escalation-in-sbiesvc"},{"cve":"CVE-2026-34462","cvss":7.8,"epss":0.0017,"slug":"cve-2026-34462-sandboxie-plus-stack-buffer-overflow-in-processserver","title":"Sandboxie-Plus stack buffer overflow in ProcessServer","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.61+00:00","url":"https://junglewise.ai/threats/cve-2026-34462-sandboxie-plus-stack-buffer-overflow-in-processserver"},{"cve":"CVE-2026-34461","cvss":7.8,"epss":0.0017,"slug":"cve-2026-34461-sandboxie-plus-stack-buffer-overflow-in-sbieiniserver-runsbiectrl","title":"Sandboxie-Plus stack buffer overflow in SbieIniServer RunSbieCtrl","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:37.46+00:00","url":"https://junglewise.ai/threats/cve-2026-34461-sandboxie-plus-stack-buffer-overflow-in-sbieiniserver-runsbiectrl"},{"cve":"CVE-2026-45313","cvss":7.7,"slug":"cve-2026-45313-sandboxie-plus-sandbox-escape-via-apc-injection-in-guiserver","title":"Sandboxie-Plus sandbox escape via APC injection in GuiServer","severity":"high","exploited":false,"published_at":"2026-07-15T22:16:48.873+00:00","url":"https://junglewise.ai/threats/cve-2026-45313-sandboxie-plus-sandbox-escape-via-apc-injection-in-guiserver"},{"cve":"CVE-2026-34596","cvss":7,"epss":0.0011,"slug":"cve-2026-34596-sandboxie-plus-privilege-escalation-via-toctou-in-updutil","title":"Sandboxie-Plus privilege escalation via TOCTOU in UpdUtil","severity":"high","exploited":false,"published_at":"2026-05-05T20:16:38.08+00:00","url":"https://junglewise.ai/threats/cve-2026-34596-sandboxie-plus-privilege-escalation-via-toctou-in-updutil"},{"cve":"CVE-2026-32603","cvss":6.5,"epss":0.0015,"slug":"cve-2026-32603-sandboxie-kernel-driver-denial-of-service-via-malformed-ioctl","title":"Sandboxie kernel driver denial of service via malformed IOCTL","severity":"medium","exploited":false,"published_at":"2026-05-05T20:16:35.54+00:00","url":"https://junglewise.ai/threats/cve-2026-32603-sandboxie-kernel-driver-denial-of-service-via-malformed-ioctl"},{"cve":"CVE-2026-34527","cvss":5.3,"epss":0.0009,"slug":"cve-2026-34527-sandboxie-plus-entropy-loss-in-editpassword-hashing","title":"Sandboxie-Plus entropy loss in EditPassword hashing","severity":"medium","exploited":false,"published_at":"2026-05-05T20:16:37.93+00:00","url":"https://junglewise.ai/threats/cve-2026-34527-sandboxie-plus-entropy-loss-in-editpassword-hashing"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}