Where
-Infinity
0

Claude CodeClaude Code: Sandbox Escape via Git Worktree Path Confusion Allows Unsandboxed Code Execution

Risk 77
Severity
7.7
First published (updated )

npm/@anthropic-ai/claude-codeClaude Code: Insecure Temporary File in /copy Command Enables Response Disclosure and Symlink-Based File Write

Risk 46
Severity
4.4
First published (updated )

npm/@anthropic-ai/claude-codeClaude Code: Out-of-Band Data Exfiltration via Pre-Approved HuggingFace Domain in WebFetch

Risk 66
Severity
6
First published (updated )

npm/@anthropic-ai/claude-codeClaude Code arbitrary code execution via git worktree commondir trust dialog bypass

Risk 77
Severity
7.7
First published (updated )

Anthropic Claude CodeClaude Code: Sandbox Escape via Symlink Following Allows Arbitrary File Write Outside Workspace

Risk 87
Severity
7.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Claude CodeClaude Code: Insecure System-Wide Configuration Loading Enables Local Privilege Escalation on Windows

Risk 64
Severity
5.4
First published (updated )

Anthropic Claude Code CLIAnthropic Claude Code & Agent SDK OS Command Injection via TERMINAL Environment Variable

Risk 41
Severity
8.6
First published (updated )

npm/@anthropic-ai/claude-codeClaude Code has a Workspace Trust Dialog Bypass via Repo-Controlled Settings File

Risk 58
Severity
7.7
EPSS
0.14%
First published (updated )

Claude Claude CodeClaude Code Has Sandbox Escape via Persistent Configuration Injection in settings.json

Risk 63
Severity
7.7
EPSS
0.06%
First published (updated )

Claude Claude CodeClaude Code Has Permission Deny Bypass Through Symbolic Links

Risk 22
Severity
2.3
EPSS
0.06%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Claude Claude CodeClaude Code Vulnerable to Command Injection via Piped sed Command Bypasses File Write Restrictions

Risk 52
Severity
7.7
EPSS
0.11%
First published (updated )

Claude Claude CodeClaude Code Vulnerable to Command Injection via Directory Change Bypasses Write Protection

Risk 47
Severity
9.1
EPSS
0.15%
First published (updated )

npm/@anthropic-ai/claude-codeClaude Code has a Command Injection in find Command Bypasses User Approval Prompt

Risk 56
Severity
8.8
EPSS
0.04%
First published (updated )

npm/@anthropic-ai/claude-codeCluade Code has a Path Restriction Bypass via ZSH Clobber which Allows Arbitrary File Writes

Risk 52
Severity
7.7
EPSS
0.02%
First published (updated )

npm/@anthropic-ai/claude-codeClaude Code has a Domain Validation Bypass which Allows Automatic Requests to Attacker-Controlled Domains

Risk 30
Severity
7.4
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

npm/@anthropic-ai/claude-codeClaude Code Leaks Data via Malicious Environment Configuration Before Trust Confirmation

Risk 32
Severity
5.3
EPSS
0.05%
First published (updated )

npm/@anthropic-ai/claude-codeClaude Code Command Validation Bypass Allows Arbitrary Code Execution

Risk 86
Severity
9.8
First published (updated )

npm/@anthropic-ai/claude-code@anthropic-ai/claude-code has Sed Command Validation Bypass that Allows Arbitrary File Writes

Risk 86
Severity
9.8
First published (updated )

Claude CodeClaude Code vulnerable to command execution prior to startup trust dialog

Risk 86
Severity
9.8
First published (updated )

Claude CodeClaude Code's startup trust dialog could lead to Command Execution attack

Risk 82
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

npm/@anthropic-ai/claude-codeClaude Code Vulnerable to Arbitrary Code Execution via Plugin Autoloading with Specific Yarn Versions

Risk 86
Severity
9.8
First published (updated )

Claude Claude CodeClaude Code vulnerable to arbitrary code execution caused by maliciously configured git email

Risk 86
Severity
9.8
First published (updated )

Claude Claude CodeClaude Code rg command had Command Injection that allowed bypass of user approval prompt for command execution

Risk 86
Severity
9.8
First published (updated )

Claude Code Claude CodeClaude Code's Permissive Default Allowlist Enables Unauthorized File Read and Network Exfiltration in Claude Code

Risk 43
Severity
7.5
First published (updated )

npm/@anthropic-ai/claude-codeClaude Code echo command allowed bypass of user approval prompt for command execution

Risk 90
Severity
8.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

npm/@anthropic-ai/claude-codeClaude Code Research Preview has a Path Restriction Bypass which could allow unauthorized file access

Risk 70
Severity
7.7
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203