Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1020 CNY

100%

CVE-2026-47092— Claude HUD 0.0.12 Arbitrary Command Execution via COMSPEC Environment Variable

CVSS 7.8 · High EPSS 0.04% · P12

Possible ATT&CK Techniques 1AI

T1059 · Command and Scripting Interpreter

Affected Version Matrix 2

VendorProductVersion RangeStatus
jarrodwattsclaude-hud≤ 0.0.12affected
234d9aad919b51326a43bcf90b45ae35c23afc30unaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-47092

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Claude HUD 0.0.12 Arbitrary Command Execution via COMSPEC Environment Variable
Source: NVD (National Vulnerability Database)
Vulnerability Description
Claude HUD through 0.0.12, patched in commit 234d9aa, contains a command injection vulnerability that allows local attackers to execute arbitrary commands by manipulating the COMSPEC environment variable. Attackers can set COMSPEC to an arbitrary binary path before claude-hud performs its version check, causing execFile() to execute the attacker-supplied executable with cmd.exe arguments, resulting in arbitrary code execution on Windows systems.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
对搜索路径元素未加控制
Source: NVD (National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
jarrodwattsclaude-hud 0 ~ 0.0.12 -

II. Public POCs for CVE-2026-47092

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-47092

登录查看更多情报信息。

Same Patch Batch · jarrodwatts · 2026-05-18 · 3 CVEs total

CVE-2026-470904.6 MEDIUMClaude HUD 0.0.12 Terminal Injection via OSC 8 Hyperlinks
CVE-2026-470913.3 LOWClaude HUD 0.0.12 Path Traversal via transcript_path

IV. Related Vulnerabilities

V. Comments for CVE-2026-47092

No comments yet


Leave a comment