logo

An Evening with Claude (Code)

ID: 592b5afb-b0ff-5d4a-a4f3-e43e68023a02

STIX ID: report--592b5afb-b0ff-5d4a-a4f3-e43e68023a02

Feed Name: SpecterOps Blog

Threat Score
70/100

Date Published: 2025-11-21

Date Updated: 2026-04-30

Author: Adam Chester

...
...

A SpecterOps researcher discovered a prompt-injection vulnerability in Claude Code (CVE-2025-64755) where inadequate validation of shell commands—particularly sed expressions—allowed attackers to write/read files and achieve local code execution; Anthropic published a fix in v2.0.31 following coordinated disclosure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.