CNNVD-202512-459 Information

CNNVD ID

CNNVD-202512-459

CVE-2025-66479

  • CNNVD Published: 2025-12-04

Description (Chinese)

Anthropic Sandbox Runtime是Anthropic-experimental开源的一个轻量级的沙盒工具。 Anthropic Sandbox Runtime 0.0.16之前版本存在安全漏洞,该漏洞源于沙箱逻辑错误,可能导致网络请求绕过沙箱。

Description (English)

Anthropic Sandbox Runtime is a lightweight sandbox tool from the Anthropic-experimental open source. Anthropic Sandbox Runtime 0.0.16 had a security loophole, which stemmed from a logical error in the sandbox, which could lead to a network request bypassing the sandbox.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Anthropic-experimental

Published

2025-12-04

Last Modified

2026-02-24

References

https://github.com/anthropic-experimental/sandbox-runtime/commit/bea2930cc1db9c73a1b15acf6dc19c5261aec1f3 https://github.com/anthropic-experimental/sandbox-runtime/security/advisories/GHSA-9gqj-5w7c-vx47

Patch

https://github.com/anthropic-experimental/sandbox-runtime

Share on: