Sandboxie Plus is a containment and isolation utility that runs on Windows and allows users to execute applications in a restricted sandbox environment to prevent malware and unauthorized system changes. The product occupies a specialized security role and has generated a modest disclosure footprint concentrated in its core containment mechanisms. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sandboxie Plus over time
Signals from CVEs in this vendor scope (17 CVEs).
17 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-34458HIGH Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, an INI injection vulnerability allows any standard local user to bypa | May 5, 2026 | 8.8 | 34 | NO | NO |
CVE-2026-34459HIGH Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, the SbieSvc proxy service's GetRawInputDeviceInfoSlave handler contai | May 5, 2026 | 8.8 | 33 | NO | NO |
CVE-2025-64721CRITICAL Sandboxie is a sandbox-based isolation software for 32-bit and 64-bit Windows NT-based operating systems. In versions 1.16.6 and below, the SYSTEM-level service SbieSvc.exe exposes | Dec 11, 2025 | 10.0 | 33 | NO | NO |
CVE-2026-34464HIGH Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, NamedPipeServer::OpenHandler copies the server field from NAMED_PIPE_ | May 5, 2026 | 8.8 | 32 | NO | NO |
CVE-2026-34462HIGH Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, several ProcessServer handlers (KillAllHandler, SuspendAllHandler, an | May 5, 2026 | 7.8 | 30 | NO | NO |
CVE-2026-34461HIGH Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, the SbieIniServer RunSbieCtrl handler contains a stack buffer overflo | May 5, 2026 | 7.8 | 30 | NO | NO |
CVE-2018-18748CRITICAL Sandboxie 5.26 allows a Sandbox Escape via an "import os" statement, followed by os.system("cmd") or os.system("powershell"), within a .py file. NOTE: the vendor disputes this issu | Oct 29, 2018 | 10.0 | 30 | NO | NO |
CVE-2026-34596HIGH Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, a Time-of-Check-to-Time-of-Use (TOCTOU) race condition exists during | May 5, 2026 | 7.0 | 28 | NO | NO |
CVE-2026-32603MEDIUM Sandboxie is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, a local denial of service vulnerability exists in the Sandboxie kernel dri | May 5, 2026 | 6.5 | 27 | NO | NO |
CVE-2026-34527MEDIUM Sandboxie-Plus is an open source sandbox-based isolation software for Windows. In versions 1.17.2 and earlier, SbieIniServer::HashPassword converts a SHA-1 digest to hexadecimal in | May 5, 2026 | 5.3 | 24 | NO | NO |
Signals from CVEs in this vendor scope (17 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sandboxie Plus.
Media articles that mention a CVE ID that affects a product developed by Sandboxie Plus — matched by CVE ID, not by vendor name.