CVE-2026-73222

Source
https://cve.org/CVERecord?id=CVE-2026-73222
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-73222.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-73222
Aliases
  • GHSA-79wm-x847-7cvg
Published
2026-08-11T18:27:09.297Z
Modified
2026-08-15T11:31:18.163608594Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Claude Code Templates: Unauthenticated OS command injection (RCE) in Claude Code Studio server (--studio)
Details

Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds to all interfaces on port 3444, permits cross-origin requests, and requires no authentication. The POST /api/execute endpoint passes the prompt request-body field to executeLocalTask(), and POST /api/install-agent passes the agentName request-body field to a child process. The same unsafe agent field path is reachable from /api/execute through checkAndInstallAgent(). These attacker-controlled values reach child_process.spawn() with shell execution enabled, causing Node.js to construct a shell command in which metacharacters are interpreted. An attacker who can reach the port directly, or who convinces a developer running Studio to visit a malicious website, can execute arbitrary operating-system commands with the developer's privileges and compromise source code, credentials, and local data. This issue is fixed in version 1.29.4.

Database specific
{
    "unresolved_ranges": [
        {
            "extracted_events": [
                {
                    "fixed": "1.29.4"
                }
            ],
            "source": "AFFECTED_FIELD"
        }
    ],
    "cna_assigner": "GitHub_M",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/73xxx/CVE-2026-73222.json",
    "cwe_ids": [
        "CWE-306",
        "CWE-352",
        "CWE-78"
    ]
}
References

Affected packages

Git / github.com/davila7/claude-code-templates

Affected ranges

Type
GIT
Repo
https://github.com/davila7/claude-code-templates
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
Show details
{
    "source": "REFERENCES"
}

Affected versions

v1.*
v1.0.1
v1.13.0
v1.14.0
v1.14.16
v1.14.9
v1.15.0
v1.15.1
v1.18.0
v1.19.0
v1.19.1
v1.21.0
v1.21.11
v1.21.13
v1.21.14
v1.21.2
v1.21.3
v1.21.4
v1.22.0
v1.22.2
v1.23.0
v1.24.0
v1.24.16
v1.25.0
v1.26.0
v1.26.2
v1.26.4
v1.27.0
v1.28.14
v1.28.15
v1.28.16
v1.28.3
v1.29.0
v1.29.2
v1.9.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-73222.json"