CyberSecurityBoardThreat Intel · CVEs · Products

Tag: Claude Code

Critical CVEs

CVE-2026-25725: Claude Code Sandbox Escape

A sandbox escape vulnerability in Claude Code (CVSS 7.7) allows an attacker with code execution inside the sandbox to create a malicious…

arbitrary code execution Claude Code CVE-2026-25725 CVSS 7.7
August 27, 2026
Malware

ChainDrop npm Worm Uses AI Agent Hooks

ChainDrop is an npm worm whose operators planted malicious Claude Code SessionStart hooks and VS Code folderOpen tasks in compromised repositories. The…

ChainDrop Claude Code npm Supply Chain
August 7, 2026