CVE-2026-24053 | anthropics claude-code up to 2.0.73 ZSH Clobber Syntax Parser path traversal (GHSA-q728-gf8j-w49r / EUVD-2026-5156)
A vulnerability labeled as critical has been found in anthropics claude-code up to 2.0.73. Affected is an unknown function of the component ZSH Clobber Syntax Parser. Executing a manipulation can lead to path traversal.
This vulnerability is registered as CVE-2026-24053. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.