PT-2026-6186 · Anthropic · Claude-Code

·

CVE-2026-24052

·

Published

2026-02-03

·

Updated

2026-03-18

CVSS v3.1

7.4

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Claude Code versions prior to 1.0.111
Description Claude Code, an agentic coding tool, had a flaw in how it checked the trustworthiness of web addresses when making WebFetch requests. The application used a startsWith() function to confirm trusted domains, which allowed attackers to potentially register domains that would pass the validation. For example, a domain like modelcontextprotocol.io.example.com could bypass the check. This could lead to the application automatically sending requests to domains controlled by attackers without the user's knowledge, potentially resulting in data being stolen.
Recommendations Update to version 1.0.111 or later.

Exploit

Fix

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-24052
GHSA-VHW5-3G5M-8GGF

Affected Products

Claude-Code