logo

Claude Code’s Network Sandbox Vulnerability Exposes User Credentials and Source Code

ID: bd5ab9f8-5643-57b6-bc04-6a2d4fc29b9f

STIX ID: report--bd5ab9f8-5643-57b6-bc04-6a2d4fc29b9f

Feed Name: cybersecurityNews.com

Threat Score
80/100

Date Published: 2026-05-21

Date Updated: 2026-05-21

Author: Guru Baran

...
...

Anthropic’s Claude Code had a critical SOCKS5 hostname null-byte injection vulnerability in its network sandbox from v2.0.24 through v2.1.89 (≈Oct 20, 2025–Apr 1, 2026) that allowed attackers to bypass allowlists and exfiltrate AWS credentials, GitHub tokens, cloud metadata, internal endpoints, environment variables, and model API keys. The issue was privately patched in v2.1.90 without a public advisory or CVE; users are advised to update immediately, audit SOCKS egress logs, and rotate reachable credentials.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.