CVE-2025-52882 | Anthropic claude-code up to 1.0.23 missing origin validation in websockets (GHSA-9f65-56v6-gxw7 / EUVD-2025-19068)
A vulnerability identified as critical has been detected in Anthropic claude-code up to 1.0.23. This affects an unknown function. The manipulation leads to missing origin validation in websockets.
This vulnerability is referenced as CVE-2025-52882. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.