Claude Code Fixes Multiple Permission Bypass Bugs, Adds Abusive Session Termination
ashwin-ant · ghdev · 2026-07-18
Anthropic releases Claude Code v2.1.214, focusing on fixing several security risks that could lead to unauthorized operations and improving usability.
- Security Fixes: Corrected an issue where dir/ rules auto-approved writes to nested directories; fixed a permission-check bypass in Windows PowerShell 5.1 sessions; fixed Bash permission checks mishandling very long commands (over 10,000 chars), zsh variable subscripts, and certain help/man commands.
- New Features: Introduced the EndConversation tool, allowing Claude to terminate highly abusive or jailbreak-attempt sessions (consistent with claude.ai); added a periodic progress heartbeat for long-running tool calls; added permission prompts for Docker commands with daemon-redirect flags.
- Observability: Added message-level UUID and tool source attributes to OpenTelemetry log events, with configurable content truncation limits.
More from coding & agent
- GPT-6 Astra beats Factorio with enemies in 44 in-game hours at ~$4,500 API cost — liminal_bardo · 2026-09-11
- 105 hidden bugs, 2 repos: DeepSeek V4.1 Flash fixes 24 at $1.80 vs Opus 5's 27 at $51.33 — ChartsJournalX · 2026-09-11
- Investment Analyst Asks How to Build a Claude-Based Diligence Agent Stack — Careless_Tie2286 · 2026-09-11
- Treating agents like 50 First Dates: a 3-layer context system so every conversation doesn't start from zero — evielync · 2026-09-11
- Running the Firefox MCP on Android via Termux, ngrok, and mcp-proxy — Nervous-Strain7544 · 2026-09-11
- SmolVM open-sources persistent computer infrastructure for agents that outlive chat sessions — aniketmaurya · 2026-09-11