Threat · curated 5 Aug 2026
CVE-2026-55607 vulnerability: npm/@anthropic-ai/cl…
First reported corgea.com
Coverage timeline
Single-source advisory — first reported, latest, and curated coincide.
Why it matters
CVE-2026-55607 targets Claude Code, a widely used AI coding agent, so teams embedding it in developer workflows should upgrade to the patched release to close the flaw.
CVE-2026-55607 is a vulnerability affecting the npm package @anthropic-ai/claude-code, Anthropic's AI coding agent, tracked via GitHub Security Advisory GHSA-7835-87q9-rgvv and NVD, with a fix referenced in the v2.1.163 release. The Corgea page is an advisory catalog entry pointing to the upstream advisory and NVD record.