PT-2026-6186 · Anthropic · Claude-Code

47Sid-Praetorian

·

Published

2026-02-03

·

Updated

2026-03-18

·

CVE-2026-24052

CVSS v3.1

7.4

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Claude Code versions prior to 1.0.111
Description Claude Code, an agentic coding tool, had a flaw in how it checked the trustworthiness of web addresses when making WebFetch requests. The application used a startsWith() function to confirm trusted domains, which allowed attackers to potentially register domains that would pass the validation. For example, a domain like modelcontextprotocol.io.example.com could bypass the check. This could lead to the application automatically sending requests to domains controlled by attackers without the user's knowledge, potentially resulting in data being stolen.
Recommendations Update to version 1.0.111 or later.

Exploit

Fix

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2026-24052
GHSA-VHW5-3G5M-8GGF

Affected Products

Claude-Code