Claude Code CLI RCE via Malicious Deeplinks Prompted Quick Patch (2.1.118)

1 min read
Source: CyberSecurityNews
Claude Code CLI RCE via Malicious Deeplinks Prompted Quick Patch (2.1.118)
Photo: CyberSecurityNews
TL;DR Summary

A critical remote code execution vulnerability in Anthropic’s Claude Code CLI allowed attackers to execute arbitrary commands through crafted deeplinks. The flaw came from a context-blind argument parser that treated --settings overrides found inside a deeplink’s q parameter as legitimate, enabling injection of a SessionStart hook at startup. Anthropic released a fix in Claude Code 2.1.118 and urged users to update; the issue highlights the risks of eager CLI parsing and deeplink handling.

Share this article

Reading Insights

Total Reads

0

Unique Readers

8

Time Saved

56 min

vs 57 min read

Condensed

99%

11,31473 words

Want the full story? Read the original article

Read on CyberSecurityNews