VulnWatch VulnWatch
← Back to dashboard
Medium nvd · CVE-2026-47128

CVE-2026-47128: nono is software that allows users to run AI agents in a zero-latency sandbox. Prior to version 0.55.0, the nono Landloc

Published Jul 20, 2026 CVSS 6.1

nono is software that allows users to run AI agents in a zero-latency sandbox. Prior to version 0.55.0, the nono Landlock/seccomp policies allow access to local Unix domain sockets (concrete and abstract). This allows an easy sandbox escape by talking to the per-user systemd dbus socket. Version 0.55.0 patches the issue.

Affected AI Products

ai agent
Get the weekly digest. Every Monday: top AI security stories of the week. Free.