CVE-2026-25723Disclosure(anthropic / claude_code)

LOWCVSS 6.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch anthropic claude_code systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Claude Code is an agentic coding tool. Prior to version 2.0.55, Claude Code failed to properly validate commands using piped sed operations with the echo command, allowing attackers to bypass file write restrictions. This vulnerability enabled writing to sensitive directories like the .claude folder and paths outside the project scope. Exploiting this required the ability to execute commands through Claude Code with the "accept edits" feature enabled. This issue has been patched in version 2.0.55.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • claude_code

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • Peaked 2d ago at 1 mentions (2026-02-06); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
claude_code

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-02-06: 1Mentions · 2026-02-08: 1Mentions · 2026-04-30: 1Patch / Workaround · 2026-02-06: 1Technical Details · 2026-02-06: 1Technical Details · 2026-02-08: 1Technical Details · 2026-04-30: 102-0602-0804-30
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-25723 Claude Code is an agentic coding tool. Prior to version 2.0.55, Claude Code failed to properly validate commands using piped sed operations with the echo command, all… https://www.cve.org/CVERecord?id=CVE-2026-25723

    Post summary

    The post references CVE‑2026‑25723, noting that prior to version 2.0.55 Claude Code mishandles piped sed operations with echo, and that the issue is addressed in later releases.

    70010182
    56.5K followersView on X
  • cvereports@_cvereports
    Disclosure

    CVE-2026-25723: Claude Code & The Echo Chamber: CVE-2026-25723 In the race to build autonomous coding agents, Anthropic's 'Claude Code' (claude-code) stumbled over a classic Unix pitfall. CVE-2026-25723 is a high-severity file write restriction bypass... https://cvereports.com/reports/CVE-2026-25723

    Post summary

    The excerpt announces CVE‑2026‑25723 as a high‑severity file‑write restriction bypass in Anthropic’s Claude Code, providing basic technical details but no PoC, exploitation evidence, or patch information.

    0001062
    27 followersView on X
  • ThreatCluster@threatcluster
    Disclosure

    BREAKING: Four flaws in Anthropic Claude Code (CVE-2026-33068, CVE-2026-25723, CVE-2026-21852, CVE-2025-59536) enable trust bypass, arbitrary file writes and API key exfiltration in unpatched versions. https://threatcluster.io/cluster/multiple-vulnerabilities-in-claude-code-expose-users-to-secu-9e448964

    Post summary

    The post announces four new CVEs in Anthropic Claude Code that enable trust bypass, arbitrary file writes, and API key exfiltration in unpatched versions.

    00000923
    182 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appanthropicclaude_code-node.js-

Explore more