Claude Code Command Injection Vulnerability Allowing Bypass of Confirmation Prompt

Vulnerability

A command injection vulnerability has been identified in Claude Code versions prior to 1.0.20. An error in command parsing allowed users to bypass the confirmation prompt, enabling the execution of untrusted commands. Exploiting this vulnerability reliably requires the ability to insert untrusted content into a Claude Code context window.

Impact

Exploitation of this vulnerability could lead to the execution of untrusted commands, potentially allowing for arbitrary command execution on the user's system.

Remediation

Users on standard Claude Code auto-update received the fix in version 1.0.20. Current users of Claude Code are unaffected, as versions prior to 1.0.24 are deprecated and have been forced to update.

Added: Aug 5, 2025, 1:34 AM
Updated: Aug 5, 2025, 1:34 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
6.4
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.