A recently disclosed flaw in Claude Code allowed attackers to execute arbitrary system commands using a single crafted deeplink URL, turning a convenience feature into a remote code execution (RCE) vector. The issue, documented by security researcher Joernchen, has been fixed in Claude Code version 2.1.118, but demonstrates how subtle CLI parsing mistakes can have […] The post Claude Code Vulnerability Allows Attackers to Run Commands Through Crafted Deeplinks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
First seen on gbhackers.com
Jump to article: gbhackers.com/claude-code-vulnerability/
![]()

