PT-2025-40539 · Anthropic · Claude-Code

Vinai

·

Published

2025-10-03

·

Updated

2025-10-24

·

CVE-2025-59829

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Claude Code versions prior to 1.0.120
Description An issue existed where Claude Code did not properly handle symlinks when enforcing permission deny rules. Specifically, if a user blocked Claude Code’s access to a file, but Claude Code had access to a symlink pointing to that file, Claude Code could still access the restricted file. This occurred because the system failed to account for symlinks when evaluating permission restrictions.
Recommendations Update to version 1.0.120 or later.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-59829
GHSA-66M2-GX93-V996

Affected Products

Claude-Code