{"id":"CVE-2025-59829","title":"Claude Code is an agentic coding tool","summary":"Claude Code is an agentic coding tool. Versions below 1.0.120 failed to account for symlinks when checking permission deny rules. If a user explicitly denied Claude Code access to a file and Claude Code had access to a symlink pointing t…","severity":"medium","cvss":6.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N","cwe":["CWE-61"],"vendor":"anthropic","product":"claude_code","affected":["claude_code < 1.0.120"],"patched":["claude_code 1.0.120"],"published":"2025-10-03","updated":"2026-10-08","sourceUpdated":"2026-10-08T22:10:00.563","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-59829","references":[{"url":"https://github.com/anthropics/claude-code/security/advisories/GHSA-66m2-gx93-v996","label":"security-advisories@github.com"}],"tags":["nvd"],"epss":0.00447,"epssPercentile":0.36864,"ingestedAt":"2026-10-08T22:11:53.777Z","slug":"CVE-2025-59829","body":"## Overview\n\nClaude Code is an agentic coding tool. Versions below 1.0.120 failed to account for symlinks when checking permission deny rules. If a user explicitly denied Claude Code access to a file and Claude Code had access to a symlink pointing to that file, it was possible for Claude Code to access the file. Users on standard Claude Code auto-update will have received this fix automatically. Users performing manual updates are advised to update to the latest version. This issue is fixed in version 1.0.120.\n\n## Affected\n\n- `claude_code < 1.0.120`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `claude_code 1.0.120`","depth":"sunlit","depthScore":36,"depthScoreParts":{"impact":35.8,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}