@gitlawb/openclaude@0.2.3

OpenClaude opens coding-agent workflows to any LLM — OpenAI, Gemini, DeepSeek, Ollama, and 200+ models

  • latest version

    0.28.0

  • latest non vulnerable version

  • first published

    4 months ago

  • latest version published

    1 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the @gitlawb/openclaude package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • C
    Missing Authentication for Critical Function

    @gitlawb/openclaude is an OpenClaude opens coding-agent workflows to any LLM — OpenAI, Gemini, DeepSeek, Ollama, and 200+ models

    Affected versions of this package are vulnerable to Missing Authentication for Critical Function via the BashTool input schema that exposes dangerouslyDisableSandbox parameter in addition to allowUnsandboxedCommands commands being allowed by default. An attacker can execute arbitrary commands on the host system by manipulating the input to disable sandboxing, leading to full host-level code execution, file access, and potential exfiltration of sensitive data.

    How to fix Missing Authentication for Critical Function?

    Upgrade @gitlawb/openclaude to version 0.5.1 or higher.

    <0.5.1
    • M
    Cross-site Request Forgery (CSRF)

    @gitlawb/openclaude is an OpenClaude opens coding-agent workflows to any LLM — OpenAI, Gemini, DeepSeek, Ollama, and 200+ models

    Affected versions of this package are vulnerable to Cross-site Request Forgery (CSRF) through the callback process. An attacker can cause the local server to shut down and terminate active authentication sessions by sending a crafted request containing an error parameter, which bypasses internal state validation. This can be triggered remotely via a cross-origin request without authentication or knowledge of the expected state value.

    How to fix Cross-site Request Forgery (CSRF)?

    Upgrade @gitlawb/openclaude to version 0.5.1 or higher.

    <0.5.1
    • H
    Access Control Bypass

    @gitlawb/openclaude is an OpenClaude opens coding-agent workflows to any LLM — OpenAI, Gemini, DeepSeek, Ollama, and 200+ models

    Affected versions of this package are vulnerable to Access Control Bypass via the bashToolHasPermission function. An attacker can access or modify files outside the intended sandbox boundaries by submitting commands containing path traversal sequences when the sandbox auto-allow feature is enabled and no explicit deny rules are configured. This is only exploitable if the sandbox auto-allow feature is active and there are no explicit deny rules present for the session.

    How to fix Access Control Bypass?

    Upgrade @gitlawb/openclaude to version 0.5.1 or higher.

    <0.5.1