Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2025-54795

около 1 года назад

Claude Code is an agentic coding tool. In versions below 1.0.20, an error in command parsing makes it possible to bypass the Claude Code confirmation prompt to trigger execution of an untrusted command. Reliably exploiting this requires the ability to add untrusted content into a Claude Code context window. This is fixed in version 1.0.20.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-x56v-x2h6-7j34

около 1 года назад

Claude Code echo command allowed bypass of user approval prompt for command execution

EPSS: Низкий
fstec логотип

BDU:2025-13142

около 1 года назад

Уязвимость инструмента для работы с кодом Claude Code, связанная с неправильной очисткой входных данных, позволяющая нарушителю выполнить произвольные команды

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-54795

Claude Code is an agentic coding tool. In versions below 1.0.20, an error in command parsing makes it possible to bypass the Claude Code confirmation prompt to trigger execution of an untrusted command. Reliably exploiting this requires the ability to add untrusted content into a Claude Code context window. This is fixed in version 1.0.20.

CVSS3: 9.8
1%
Низкий
около 1 года назад
github логотип
GHSA-x56v-x2h6-7j34

Claude Code echo command allowed bypass of user approval prompt for command execution

1%
Низкий
около 1 года назад
fstec логотип
BDU:2025-13142

Уязвимость инструмента для работы с кодом Claude Code, связанная с неправильной очисткой входных данных, позволяющая нарушителю выполнить произвольные команды

CVSS3: 9.8
1%
Низкий
около 1 года назад

Уязвимостей на страницу