No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-5474-4w2j-mq4c | Claude SDK for TypeScript: Memory Tool Path Validation Allows Sandbox Escape to Sibling Directories |
Wed, 01 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 01 Apr 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Claude SDK for TypeScript provides access to the Claude API from server-side TypeScript or JavaScript applications. From version 0.79.0 to before version 0.81.0, the local filesystem memory tool in the Anthropic TypeScript SDK validated model-supplied paths using a string prefix check that did not append a trailing path separator. A model steered by prompt injection could supply a crafted path that resolved to a sibling directory sharing the memory root's name as a prefix, allowing reads and writes outside the sandboxed memory directory. This issue has been patched in version 0.81.0. | |
| Title | Claude SDK for TypeScript: Memory Tool Path Validation Allows Sandbox Escape to Sibling Directories | |
| Weaknesses | CWE-22 CWE-41 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-04-01T18:57:05.442Z
Reserved: 2026-03-27T18:18:14.895Z
Link: CVE-2026-34451
Updated: 2026-04-01T18:56:56.979Z
Status : Undergoing Analysis
Published: 2026-03-31T22:16:20.167
Modified: 2026-04-01T14:23:37.727
Link: CVE-2026-34451
No data.
OpenCVE Enrichment
No data.
Github GHSA