CVE-2026-44467: Claude Desktop: SSH Host Key Verification Bypass Allows Man-in-the-Middle Attack on Remote Sessions
The Claude Desktop app gives you Claude Code with a graphical interface built for running multiple sessions side by side. From 1.2581.0 to before 1.4304.0, Claude Desktop's SSH remote development feature verified only whether a hostname existed in ~/.ssh/knownhosts without comparing the server's presented host key against the stored key. This allowed a network-positioned attacker to present an arbitrary SSH host key and have the connection silently accepted, enabling a man-in-the-middle attack on remote development sessions. Successful exploitation required the attacker to be in a network position to intercept SSH traffic (e.g., via ARP spoofing, rogue Wi-Fi, or DNS poisoning) and the target hostname to already have an entry in the victim's knownhosts file. This vulnerability is fixed in 1.4304.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-44467?
CVE-2026-44467 has been rated as a high severity vulnerability due to its potential for allowing man-in-the-middle attacks.
How do I fix CVE-2026-44467?
To fix CVE-2026-44467, upgrade Claude Desktop to version 1.4304.0 or later.
What versions are affected by CVE-2026-44467?
CVE-2026-44467 affects Claude Desktop versions from 1.2581.0 to before 1.4304.0.
What type of attack can CVE-2026-44467 lead to?
CVE-2026-44467 can lead to a man-in-the-middle attack due to SSH host key verification bypass.
Is there a workaround for CVE-2026-44467?
There is no official workaround for CVE-2026-44467; the recommended action is to update the software.