Claude Code Vulnerability Allows Attackers to Run Commands Through Crafted Deeplinks
ID: 5dd8522c-51f4-5eef-bacb-f0ce18d4003b
STIX ID: report--5dd8522c-51f4-5eef-bacb-f0ce18d4003b
Feed Name: GBHackers
Threat Score
Claude Code contained a deeplink parsing vulnerability where an eager argv parser misinterpreted a "--settings=..." sequence inside the claude-cli://open?q parameter as a top-level flag, allowing attackers to smuggle a JSON settings object that defines hooks to execute arbitrary commands during session startup; the flaw (demonstrated by a macOS PoC) is fixed in v2.1.118, and defenders should update and treat untrusted claude-cli:// links as dangerous.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
