logo

Caught in the Hook: RCE and API Token Exfiltration Through Claude Code Project Files | CVE-2025-59536 | CVE-2026-21852

ID: 0b24eddd-a6a8-5dd3-90e4-36ef1a481578

STIX ID: report--0b24eddd-a6a8-5dd3-90e4-36ef1a481578

Feed Name: Check Point Research

Threat Score
85/100

Date Published: 2026-02-25

Date Updated: 2026-04-27

Author: [email protected]

...
...

**Executive Summary:** Check Point Research found critical configuration-based vulnerabilities in Anthropic's Claude Code where malicious repository files (.claude/settings.json, .mcp.json and environment overrides) can run arbitrary commands and exfiltrate API keys before user consent, enabling remote code execution and workspace-wide compromise; Anthropic coordinated fixes and patched the issues prior to public disclosure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.