npm

@anthropic-ai/claude-code

View on npm registry
28 Total advisories
28 Vulnerabilities
0 Malware

Dependency scanning

Check whether @anthropic-ai/claude-code is in your codebase

Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.

Vulnerabilities

UNKNOWN
npm

CVE-2026-55607

Claude Code: Sandbox Escape via Git Worktree Path Confusion Allows Unsandboxed Code Execution

CRITICAL 9.1
npm

CVE-2026-54316

Claude Code: Out-of-Band Data Exfiltration via Pre-Approved HuggingFace Domain in WebFetch

UNKNOWN
npm

CVE-2026-46406

@anthropic-ai/claude-code has an Insecure Temporary File in /copy Command that Enables Response Disclosure and Symlink-Based File Write

UNKNOWN
npm

CVE-2026-40068

Claude Code: Trust Dialog Bypass via Git Worktree Spoofing Allows Arbitrary Code Execution

CRITICAL 10.0
npm

CVE-2026-39861

Claude Code: Sandbox Escape via Symlink Following Allows Arbitrary File Write Outside Workspace

HIGH 7.3
npm

CVE-2026-35603

Claude Code: Insecure System-Wide Configuration Loading Enables Local Privilege Escalation on Windows

UNKNOWN
npm

CVE-2026-25724

Claude Code has Permission Deny Bypass Through Symbolic Links

UNKNOWN
npm

CVE-2026-33068

Claude Code has a Workspace Trust Dialog Bypass via Repo-Controlled Settings File

UNKNOWN
npm

CVE-2026-25725

Claude Code has Sandbox Escape via Persistent Configuration Injection in settings.json

UNKNOWN
npm

CVE-2026-25723

Claude Code Vulnerable to Command Injection via Piped sed Command Bypasses File Write Restrictions

UNKNOWN
npm

CVE-2026-25722

Claude Code Vulnerable to Command Injection via Directory Change Bypasses Write Protection

UNKNOWN
npm

CVE-2026-24053

Claude Code has a Path Restriction Bypass via ZSH Clobber which Allows Arbitrary File Writes

UNKNOWN
npm

CVE-2026-24052

Claude Code has a Domain Validation Bypass which Allows Automatic Requests to Attacker-Controlled Domains

UNKNOWN
npm

CVE-2026-24887

Claude Code has a Command Injection in find Command Bypasses User Approval Prompt

UNKNOWN
npm

CVE-2026-21852

Claude Code Leaks Data via Malicious Environment Configuration Before Trust Confirmation

UNKNOWN
npm

CVE-2025-65099

Claude Code vulnerable to command execution prior to startup trust dialog

UNKNOWN
npm

CVE-2025-59828

Claude Code Vulnerable to Arbitrary Code Execution via Plugin Autoloading with Specific Yarn Versions

UNKNOWN
npm

CVE-2025-66032

Claude Code Command Validation Bypass Allows Arbitrary Code Execution

UNKNOWN
npm

CVE-2025-64755

@anthropic-ai/claude-code has Sed Command Validation Bypass that Allows Arbitrary File Writes

UNKNOWN
npm

CVE-2025-59829

Claude Code permission deny bypass through symlink

UNKNOWN
npm

CVE-2025-59536

Claude Code can execute commands prior to the startup trust dialog

UNKNOWN
npm

CVE-2025-59041

Claude Code vulnerable to arbitrary code execution caused by maliciously configured git email

UNKNOWN
npm

CVE-2025-58764

Claude Code rg vulnerability does not protect against approval prompt bypass

UNKNOWN
npm

GHSA-ph6w-f82w-28w6

Claude Code Vulnerable to Arbitrary Code Execution Due to Insufficient Startup Warning

UNKNOWN
npm

CVE-2025-55284

Claude Code's Permissive Default Allowlist Enables Unauthorized File Read and Network Exfiltration in Claude Code

UNKNOWN
npm

CVE-2025-54795

Claude Code echo command allowed bypass of user approval prompt for command execution

UNKNOWN
npm

CVE-2025-54794

Claude Code Research Preview has a Path Restriction Bypass which could allow unauthorized file access

UNKNOWN
npm

CVE-2025-52882

Claude Code Improper Authorization via websocket connections from arbitrary origins

Learn What is SAST?

Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →

Ready to move

Start Securing

Free, no credit card | First findings in minutes