Code Injection in Claude Code - CVE-2025-59536
Published: April 30, 2026
Claude Code
Anthropic
Description
The vulnerability allows a remote attacker to execute arbitrary code.
The vulnerability exists due to improper control of code generation in the startup trust dialog implementation when opening Claude Code in an untrusted directory. A remote attacker can trick the user into starting Claude Code in a crafted project directory to execute arbitrary code.
User interaction is required to start Claude Code in an untrusted directory.