OsVault/npm/@anthropic-ai/claude-code
npm

@anthropic-ai/claude-code

17 known vulnerabilities · 0 critical · 0 high

CVE-2026-25722

Claude Code Vulnerable to Command Injection via Directory Change Bypasses Write Protection

Published Feb 6, 2026
GHSA-vp62-r36r-9xqp

Claude Code: Sandbox Escape via Symlink Following Allows Arbitrary File Write Outside Workspace

Published Apr 21, 2026
CVE-2026-21852

Claude Code Leaks Data via Malicious Environment Configuration Before Trust Confirmation

Published Jan 21, 2026
CVE-2025-59536

Claude Code can execute commands prior to the startup trust dialog

Published Oct 3, 2025
GHSA-5cwg-9f6j-9jvx

Claude Code: Insecure System-Wide Configuration Loading Enables Local Privilege Escalation on Windows

Published Apr 17, 2026
CVE-2025-55284

Claude Code's Permissive Default Allowlist Enables Unauthorized File Read and Network Exfiltration in Claude Code

Published Aug 18, 2025
CVE-2025-59828

Claude Code Vulnerable to Arbitrary Code Execution via Plugin Autoloading with Specific Yarn Versions

Published Sep 24, 2025
CVE-2025-65099

Claude Code vulnerable to command execution prior to startup trust dialog

Published Nov 19, 2025
CVE-2025-52882

Claude Code Improper Authorization via websocket connections from arbitrary origins

Published Jun 23, 2025
CVE-2026-25725

Claude Code has Sandbox Escape via Persistent Configuration Injection in settings.json

Published Feb 6, 2026
CVE-2026-25724

Claude Code has Permission Deny Bypass Through Symbolic Links

Published Feb 6, 2026
CVE-2026-33068

Claude Code has a Workspace Trust Dialog Bypass via Repo-Controlled Settings File

Published Mar 19, 2026
CVE-2026-24887

Claude Code has a Command Injection in find Command Bypasses User Approval Prompt

Published Feb 3, 2026
CVE-2026-24052

Claude Code has a Domain Validation Bypass which Allows Automatic Requests to Attacker-Controlled Domains

Published Feb 3, 2026
CVE-2026-25723

Claude Code Vulnerable to Command Injection via Piped sed Command Bypasses File Write Restrictions

Published Feb 6, 2026
CVE-2026-24053

Claude Code has a Path Restriction Bypass via ZSH Clobber which Allows Arbitrary File Writes

Published Feb 3, 2026
CVE-2025-66032

Claude Code Command Validation Bypass Allows Arbitrary Code Execution

Published Dec 3, 2025
Check your entire dependency tree at onceRun dependency scan →