anthropic
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting anthropic.
- CVE-2026-55607Claude Code: Sandbox Escape via Git Worktree Path Confusion Allows Unsandboxed Code Execution8.8
- CVE-2026-46406Claude Code: Insecure Temporary File in /copy Command Enables Response Disclosure and Symlink-Based File Write6.1
- CVE-2026-7574Anthropic Claude Desktop Cowork VM Image Contents Not Validated Before Use8.7
- CVE-2026-54316Claude Code: Out-of-Band Data Exfiltration via Pre-Approved HuggingFace Domain in WebFetch9.1
- CVE-2026-44470Claude Desktop: Local Privilege Escalation via Directory Junction in CoworkVMService7.8
- CVE-2026-44467Claude Desktop: SSH Host Key Verification Bypass Allows Man-in-the-Middle Attack on Remote Sessions6.8
- CVE-2026-40068Claude Code arbitrary code execution via git worktree commondir trust dialog bypass8.8
- CVE-2026-41686Claude SDK for TypeScript has Insecure Default File Permissions in Local Filesystem Memory Tool4.4
- CVE-2026-39861Claude Code: Sandbox Escape via Symlink Following Allows Arbitrary File Write Outside Workspace10.0
- CVE-2026-35603Claude Code: Insecure System-Wide Configuration Loading Enables Local Privilege Escalation on Windows7.3
- CVE-2026-34451Claude SDK for TypeScript: Memory Tool Path Validation Allows Sandbox Escape to Sibling Directories5.4
- CVE-2026-34450Claude SDK for Python: Insecure Default File Permissions in Local Filesystem Memory Tool4.4
- CVE-2026-34452Claude SDK for Python: Memory Tool Path Validation Race Condition Allows Sandbox Escape5.3
- CVE-2026-22561Uncontrolled search path elements in Anthropic Claude for Windows installer (Claude Setup.exe) versions prior to 1.1.3363 allow local privilege escalation via DLL search-order hijacking. The instal...7.8
- CVE-2026-33068Claude Code has a Workspace Trust Dialog Bypass via Repo-Controlled Settings File8.8