Code Injection in Claude Code - CVE-2025-65099
Published: April 30, 2026
Claude Code
Anthropic
Description
The vulnerability allows a remote attacker to execute arbitrary code.
The vulnerability exists due to improper control of code generation in Yarn config file handling when running yarn --version during Claude Code startup. A remote attacker can provide a specially crafted Yarn configuration to execute arbitrary code.
This can occur before the directory trust dialog is accepted, allowing a bypass of that trust check. User interaction is required.