CVE-2025-59828 Details
Description
Claude Code is an agentic coding tool. Prior to Claude Code version 1.0.39, when using Claude Code with Yarn versions 2.0+, Yarn plugins are auto-executed when running yarn --version. This could lead to a bypass of the directory trust dialog in Claude Code, as plugins would be executed prior to the user accepting the risks of working in an untrusted directory. Users running Yarn Classic were unaffected by this issue. This issue has been fixed in version 1.0.39. Users on standard Claude Code auto-update will have received this fix automatically. Users performing manual updates are advised to update to the latest version.
A vulnerability in Claude Code prior to version 1.0.39 allows arbitrary code execution via Yarn plugin autoloading. When using Yarn versions 2.0 and above, plugins are automatically executed during 'yarn --version' command. This behavior can bypass the directory trust dialog in Claude Code, as the plugins run before the user has a chance to acknowledge the risks of working in an untrusted directory. Users on Yarn Classic are not affected. The vulnerability has been patched in Claude Code version 1.0.39.
Users on standard Claude Code auto-update will have received the fix automatically. Those performing manual updates should update to the latest version.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Sep 24, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/anthropics/claude-code/security/advisories/GHSA-2jjv-qf24-vfm4 | [email protected] | Third Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-829 | Inclusion of Functionality from Untrusted Control Sphere | [email protected] |
| CWE-862 | Missing Authorization | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| anthropic claude code | < 1.0.39 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 26, 2025 | Initial Analysis | [email protected] |
| Sep 24, 2025 | New CVE Received | [email protected] |