Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Vinai

#41860of 53,630
6.5Total CVSS
Vulnerabilities · 1
PT-2025-40539
6.5
2025-10-03
Anthropic · Claude-Code · CVE-2025-59829
**Name of the Vulnerable Software and Affected Versions** Claude Code versions prior to 1.0.120 **Description** An issue existed where Claude Code did not properly handle symlinks when enforcing permission deny rules. Specifically, if a user blocked Claude Code’s access to a file, but Claude Code had access to a symlink pointing to that file, Claude Code could still access the restricted file. This occurred because the system failed to account for symlinks when evaluating permission restrictions. **Recommendations** Update to version 1.0.120 or later.