Browse all 6 CVE security advisories affecting Anthropic. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-35022 | Anthropic Claude Code & Agent SDK OS Command Injection via Authentication Helper — Claude CodeCWE-78 | 9.8 | Critical | 2026-04-06 |
| CVE-2026-35021 | Anthropic Claude Code & Agent SDK OS Command Injection via promptEditor.ts — Claude CodeCWE-78 | 7.8 | High | 2026-04-06 |
| CVE-2026-35020 | Anthropic Claude Code & Agent SDK OS Command Injection via TERMINAL Environment Variable — Claude CodeCWE-78 | 8.4 | High | 2026-04-06 |
| CVE-2026-22561 | Claude Code 安全漏洞 — Claude Desktop - Windows | 7.8 | - | 2026-03-31 |
| CVE-2026-0621 | MCP TypeScript SDK UriTemplate Exploded Array Pattern ReDoS — MCP TypeScript SDKCWE-1333 | 7.5 | - | 2026-01-05 |
| CVE-2025-34072 | Anthropic Slack MCP Server Data Exfiltration via Link Unfurling — Slack MCP ServerCWE-200 | 6.5AI | MediumAI | 2025-07-02 |
This page lists every published CVE security advisory associated with Anthropic. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.