CVE-2026-44467Disclosure(anthropic / claude_desktop)

LOWCVSS 6.8 · MEDIUM

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

The Claude Desktop app gives you Claude Code with a graphical interface built for running multiple sessions side by side. From 1.2581.0 to before 1.4304.0, Claude Desktop's SSH remote development feature verified only whether a hostname existed in ~/.ssh/known_hosts without comparing the server's presented host key against the stored key. This allowed a network-positioned attacker to present an arbitrary SSH host key and have the connection silently accepted, enabling a man-in-the-middle attack on remote development sessions. Successful exploitation required the attacker to be in a network position to intercept SSH traffic (e.g., via ARP spoofing, rogue Wi-Fi, or DNS poisoning) and the target hostname to already have an entry in the victim's known_hosts file. This vulnerability is fixed in 1.4304.0.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-297CWE-322

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • claude_desktop

Threat summary

  • Public PoC is present in monitored signal
  • 6 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 6 signals
  • Disclosure: 5 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 4 mentions (2026-05-08); latest day: 1
  • 6 total mentions across 3 days

Affected systems

Vendors
Products
claude_desktop

Deep dive

Activity timeline6 mentions / 3d
01234Mentions · 2026-05-07: 1Mentions · 2026-05-08: 4Mentions · 2026-05-09: 1PoC Mentioned / Linked · 2026-05-07: 1Technical Details · 2026-05-07: 1Technical Details · 2026-05-08: 4Technical Details · 2026-05-09: 105-0705-0805-09
Signal classification2 categories
Disclosure
583.3%
General
116.7%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-05-071
Disclosure1
2026-05-084
Disclosure3General1
2026-05-091
Disclosure1
Full discourse6 posts
  • yousukezan@yousukezan
    Disclosure

    Claude DesktopのSSH機能に潜んでいたMITM脆弱性を見つけた話(CVE-2026-44467)|masa42 https://zenn.dev/aeyesec/articles/0aa59f113a702b #zenn

    Post summary

    The author reports discovering a MITM vulnerability (CVE-2026-44467) in Claude Desktop’s SSH feature, providing the initial disclosure but no exploit, patch, or active exploitation details.

    0201021.8K
    14.4K followersView on X
  • はるぷ@harupuxa
    Disclosure

    Claude DesktopのSSH機能に潜んでいたMITM脆弱性を見つけた話(CVE-2026-44467) https://zenn.dev/aeyesec/articles/0aa59f113a702b

    Post summary

    The article announces the discovery of a MITM vulnerability in Claude Desktop’s SSH feature (CVE‑2026‑44467), providing a basic technical description but no PoC, exploit code, active exploitation evidence, or remediation details.

    00012186
    496 followersView on X
  • Masato Anzai@masato_anzai
    Disclosure

    I reported a MITM vulnerability in Claude Desktop, which has now been published as CVE-2026-44467. It's a classic vulnerability caused by improper SSH host key verification. https://github.com/anthropics/claude-code/security/advisories/GHSA-3rwf-2g6p-c2f9 #CVE #Claude

    Post summary

    A MITM vulnerability in Claude Desktop (CVE‑2026‑44467) caused by improper SSH host key verification was reported and shared in a GitHub advisory, but no exploit code, patch, or active exploitation details are provided.

    1000199
    30 followersView on X
  • connect24h@connect24h
    Disclosure

    🔐 Claude DesktopのSSH機能にMITM脆弱性(CVE-2026-44467) 日本人研究者が発見。AIツールのSSH接続でサーバー認証が不十分なため、中間者攻撃が可能な状態だった。AIにSSHを使わせる前に必読。 https://is.gd/Er3El4 #セキュリティ #AI

    Post summary

    A new MITM vulnerability (CVE-2026-44467) was discovered in Claude Desktop’s SSH feature due to inadequate server authentication.

    00000158
    2.8K followersView on X
  • 技術ブログのモーリタロー@mohritaroh
    General

    📑 Claude DesktopのSSH機能に潜んでいたMITM脆弱性を見つけた話(CVE-2026-44467) 🅱 はてなブックマーク テクノロジー新着 より https://zenn.dev/aeyesec/articles/0aa59f113a702b

    Post summary

    A MITM vulnerability (CVE-2026-44467) was identified in Claude Desktop's SSH feature, but the post offers no details on exploits, patches, or active use.

    0000060
    789 followersView on X
  • Masato Anzai@masato_anzai
    Disclosure

    Claude Desktopの脆弱性(CVE-2026-44467)の詳細解説記事を書きました。 Claude DesktopのSSH機能に潜んでいたMITM脆弱性を見つけた話(CVE-2026-44467)|masa42 https://zenn.dev/aeyesec/articles/0aa59f113a702b #zenn

    Post summary

    The article gives a detailed explanation of a MITM vulnerability in Claude Desktop’s SSH function (CVE-2026-44467).

    0000062
    30 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appanthropicclaude_desktop---

Explore more