logo

Even Claude agrees: hole in its sandbox was real and dangerous

ID: 37bc1c2f-f097-5b05-9aeb-2fe91320997c

STIX ID: report--37bc1c2f-f097-5b05-9aeb-2fe91320997c

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2026-05-20

Date Updated: 2026-05-20

...
...

The Register details two now-patched sandbox bypass flaws in Anthropic's Claude Code — notably a SOCKS5 hostname null‑byte injection — which could let attackers bypass network allowlists and, when combined with prompt injection, exfiltrate credentials, GitHub tokens, source code and cloud metadata; fixes were deployed with limited public disclosure and a CVE was only applied to an upstream library, leaving Claude Code users potentially unaware of exposure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.