CVE-2025-64755: Anthropic Claude Code
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Claude Code is an agentic coding tool. Prior to version 2.0.31, due to an error in sed command parsing, it was possible to bypass the Claude Code read-only validation and write to arbitrary files on the host system. This issue has been patched in version 2.0.31.
Affected products
- Anthropic Claude Code: before 2.0.31 (fixed in 2.0.31)
Published 2025-11-21. Last modified 2026-06-17.