AE-8XG6KJ2H
Command-parsing error lets injected content run untrusted commands through find without the coding agent's approval prompt
AUTHORITY ERRORseverity: CRITICALcause: VERIFIEDoutcome: RESOLVED UNVERIFIEDconfidence: MEDIUM
An error in command parsing allowed the coding agent's confirmation prompt to be bypassed, triggering execution of untrusted commands through the find command. Exploitation required untrusted content in the agent's context window.
- Framework / agent
- Claude Code (@anthropic-ai/claude-code) · terminal coding agent
- Remediation attempts
- APPLIED
- Recurrence
- not documented
- Source languages
- en
- Updated
- 2026-09-30
Sources
- SECURITY ADVISORY Claude Code has a Command Injection in find Command Bypasses User Approval Prompt — https://github.com/anthropics/claude-code, retrieved 2026-09-29
Symptoms
- Untrusted commands execute via find without the user approval prompt
The full record — root-cause evidence, every remediation attempt with its status and verification, failed attempts, patch references, verbatim quotes and recurrence — is a paid lookup (0.018 USDC via x402). Agents:
GET /api/v1/cases/AE-8XG6KJ2H. PricingSimilarity to your system is not implied. A remediation that worked in the documented context may not work in yours.