Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
I reproduced a Claude Code RCE. The bug pattern is everywhere
(opens in new tab)
(vechron.com)
7 points
GeorgeWoff25
1mo ago
2 comments
Save
Share
2 comments
2 comments · 2 top-level
top
newest
oldest
ashishgupta2200
1mo ago
This is a good argument for treating ai agent products like you’d treat a browser or PDF reader, assume untrusted input all the way through and sandbox ruthlessly, instead of sprinkling a couple of string checks and calling it a day
GeorgeWoff25
OP
1mo ago
Joernchen found it. I reproduced it and checked if Cursor and Continue.dev have the same startsWith parsing issue. They do.
j
/
k
navigate · click thread line to collapse