logo

Claude Code Vulnerability Allows Attackers to Run Commands Through Crafted Deeplinks

ID: 5dd8522c-51f4-5eef-bacb-f0ce18d4003b

STIX ID: report--5dd8522c-51f4-5eef-bacb-f0ce18d4003b

Feed Name: GBHackers

Threat Score
70/100

Date Published: 2026-05-18

Date Updated: 2026-05-18

Author: Divya

...
...

Claude Code contained a deeplink parsing vulnerability where an eager argv parser misinterpreted a "--settings=..." sequence inside the claude-cli://open?q parameter as a top-level flag, allowing attackers to smuggle a JSON settings object that defines hooks to execute arbitrary commands during session startup; the flaw (demonstrated by a macOS PoC) is fixed in v2.1.118, and defenders should update and treat untrusted claude-cli:// links as dangerous.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.