Skip to main content

Claude Code bypasses safety rule if given too many commands

1 month ago
A hard-coded limit on deny rules drops automatic enforcement for concatenated commands

Updated  Claude Code will ignore its deny rules, used to block risky actions, if burdened with a sufficiently long chain of subcommands. This vuln leaves the bot open to prompt injection attacks.…

Thomas Claburn