Metrics
Affected Vendors & Products
No reference.
Fri, 29 May 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-78 | |
| CPEs | cpe:2.3:a:anthropic:claude_code:*:*:*:*:*:node.js:*:* |
|
| Vendors & Products |
Anthropic claude Agent Sdk
|
|
| References |
|
|
| Metrics |
cvssV3_1
|
Fri, 29 May 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Anthropic Claude Code & Agent SDK OS Command Injection via Authentication Helper | |
| Metrics |
ssvc
|
Fri, 29 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Anthropic Claude Code CLI and Claude Agent SDK contain an OS command injection vulnerability in authentication helper execution where helper configuration values are executed using shell=true without input validation. Attackers who can influence authentication settings can inject shell metacharacters through parameters like apiKeyHelper, awsAuthRefresh, awsCredentialExport, and gcpAuthRefresh to execute arbitrary commands with the privileges of the user or automation environment, enabling credential theft and environment variable exfiltration. | This CVE ID has been rejected by its CVE Numbering Authority (CNA). It was determined that the -p flag behavior is documented in Anthropic's claude -h output with an explicit warning that non-interactive mode should only be used in trusted directories, making this intended and described behavior rather than a vulnerability. |
| Metrics |
cvssV4_0
|
cvssV4_0
|
Wed, 29 Apr 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Anthropic claude Agent Sdk
|
|
| CPEs | cpe:2.3:a:anthropic:claude_agent_sdk:*:*:*:*:*:python:*:* cpe:2.3:a:anthropic:claude_code:*:*:*:*:*:node.js:*:* |
|
| Vendors & Products |
Anthropic claude Agent Sdk
|
Tue, 07 Apr 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 07 Apr 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Anthropic
Anthropic claude Agent Sdk For Python Anthropic claude Code |
|
| Vendors & Products |
Anthropic
Anthropic claude Agent Sdk For Python Anthropic claude Code |
Mon, 06 Apr 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Anthropic Claude Code CLI and Claude Agent SDK contain an OS command injection vulnerability in authentication helper execution where helper configuration values are executed using shell=true without input validation. Attackers who can influence authentication settings can inject shell metacharacters through parameters like apiKeyHelper, awsAuthRefresh, awsCredentialExport, and gcpAuthRefresh to execute arbitrary commands with the privileges of the user or automation environment, enabling credential theft and environment variable exfiltration. | |
| Title | Anthropic Claude Code & Agent SDK OS Command Injection via Authentication Helper | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: REJECTED
Assigner: VulnCheck
Published: 2026-04-06T18:59:29.656Z
Updated: 2026-05-29T16:26:48.962Z
Reserved: 2026-03-31T20:40:15.618Z
Link: CVE-2026-35022
Updated:
Status : Rejected
Published: 2026-04-06T20:16:25.260
Modified: 2026-05-29T18:16:55.833
Link: CVE-2026-35022
No data.