漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
OpenClaude: Sandbox Bypass via Model-Controlled `dangerouslyDisableSandbox` Input
Vulnerability Description
OpenClaude is an open-source coding-agent command line interface for cloud and local model providers. Prior to version 0.5.1, the dangerouslyDisableSandbox parameter is exposed as part of the BashTool input schema, meaning the LLM (an untrusted principal per the project's own threat model) can set it to true in any tool_use response. Combined with the default allowUnsandboxedCommands: true setting, a prompt-injected model can escape the sandbox for any arbitrary command, achieving full host-level code execution. This issue has been patched in version 0.5.1.
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Vulnerability Type
关键功能的认证机制缺失
Vulnerability Title
OpenClaude 安全漏洞
Vulnerability Description
OpenClaude是Gitlawb开源的一个支持多后端的开源编码助手CLI。 OpenClaude 0.5.1之前版本存在安全漏洞,该漏洞源于dangerouslyDisableSandbox参数暴露在BashTool输入模式中且默认allowUnsandboxedCommands设置为true,可能导致提示注入模型逃逸沙箱实现主机级代码执行。
CVSS Information
N/A
Vulnerability Type
N/A