Miggo Logo

CVE-2025-59041: Claude Code vulnerable to arbitrary code execution caused by maliciously configured git email

N/A

CVSS Score

Basic Information

EPSS Score
-
Published
9/10/2025
Updated
9/10/2025
KEV Status
No
Technology
TechnologyJavaScript

Technical Details

CVSS Vector
-
Package NameEcosystemVulnerable VersionsFirst Patched Version
@anthropic-ai/claude-codenpm< 1.0.1051.0.105

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

*t st*rtup, *l*u** *o** *x**ut** * *omm*n* t*mpl*t** in wit* `*it *on*i* us*r.*m*il`. * m*li*iously *on*i*ur** us*r *m*il in *it *oul* ** us** to tri***r *r*itr*ry *o** *x**ution ***or* * us*r ****pt** t** worksp*** trust *i*lo*. Us*rs on st*n**r*

Reasoning

No *n*lysis *v*il**l*