https://reddit.com/r/netsec/comments/1v52lix/escaping_claude_coworks_local_vm_sandbox_via/: Escaping Claude Cowork’s local VM sandbox via CVE-2026-46331
Published Jul 24, 2026
·Updated
Affected Software
1 affected component
Anthropic Claude
CVE-2026-46331 is rated as critical due to its ability to allow attackers to escape the local VM sandbox.
To fix CVE-2026-46331, ensure you update to the latest version of Anthropic Claude that addresses this vulnerability.
CVE-2026-46331 affects all versions of Anthropic Claude prior to the release that includes the patch.
The potential impacts of CVE-2026-46331 include unauthorized access to sensitive data and execution of arbitrary code outside the VM.
Yes, proof-of-concept exploits for CVE-2026-46331 have been demonstrated publicly, increasing the urgency for mitigation.