Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5hhx-v7f6-x7gv

Опубликовано: 19 нояб. 2025
Источник: github
Github: Прошло ревью
CVSS4: 7.7

Описание

Claude Code vulnerable to command execution prior to startup trust dialog

When using Claude Code with Yarn installed, Yarn config files can trigger code execution when running yarn --version. This could lead to a bypass of the directory trust dialog in Claude Code, as plugins and yarnPath could be executed prior to the user accepting the risks of working in an untrusted directory. Users on standard Claude Code auto-update will have received this fix automatically. Users performing manual updates are advised to update to the latest version.

Thank you to Benjamin Faller, Redguard AG and Michael Hess for reporting this issue!

Пакеты

Наименование

@anthropic-ai/claude-code

npm
Затронутые версииВерсия исправления

< 1.0.39

1.0.39

EPSS

Процентиль: 31%
0.00113
Низкий

7.7 High

CVSS4

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 9.8
nvd
3 месяца назад

Claude Code is an agentic coding tool. Prior to version 1.0.39, when running on a machine with Yarn 3.0 or above, Claude Code could have been tricked to execute code contained in a project via yarn plugins before the user accepted the startup trust dialog. Exploiting this would have required a user to start Claude Code in an untrusted directory and to be using Yarn 3.0 or above. This issue has been patched in version 1.0.39.

EPSS

Процентиль: 31%
0.00113
Низкий

7.7 High

CVSS4

Дефекты

CWE-94