Claude Code vulnerability lets untrusted git repo escape macOS sandbox for RCE
ziv_ravid · x · 2026-09-11
Accomplish.ai researchers disclosed a severe RCE/ACE vulnerability in Claude Code: opening an untrusted git repo can escape the macOS sandbox, execute commands as the privileged user, and bypass the permission prompt.
More from coding & agent
- Ten lessons from three years building agents for real production work — garrytan · 2026-09-11
- Devin's New Model Verdict: Not a Benchmaxxer, a 'Killer Execution Model' at $20/Month — brandon_galang · 2026-09-11
- Shopify CEO Tobi Lütke hails single-dev open-source agent harness Pi — aakashgupta · 2026-09-11
- Shopify CEO Tobi Lütke Calls Pi, a Solo-Dev Open-Source Agent Harness, 'the Most Interesting' One — aakashgupta · 2026-09-11
- Dev explains why MCP won him over: organic UX beats telling agents to run CLI commands — zeeg · 2026-09-11
- Sentry Founder: MCP Won Because Agents Can Just 'Fix This URL', Not Call CLIs — zeeg · 2026-09-11