#sandbox
10 articles
A coordinated security audit of NousResearch/hermes-agent (EPIC #82591) revealed 5 HIGH-severity vulnerabilities including credent…
Claude Code issue #83035: when a session or subagent runs inside a nested project directory, the workspace's sandbox settings are …
Claude Code versions 2.1.221-223 (Aug 4-6, 2026) fixed hidden-command permission bypasses, sandbox escapes, and worktree isolation…
CVE-2026-55607 is an 8.8-severity sandbox escape in Claude Code that lets a malicious repository chain git worktree naming, symlin…
A coordinated wave of security fixes across Gitlawb/zero and Goose shows the 'sandbox' you trusted was handing provider API keys, …
This week's Hacker News surfaced three developer-built tools — capn-hook, agent-run, and Kote — that tackle the real pain points o…
Gitlawb Zero's sandbox inherited environment variables verbatim from the parent process. AWS keys, GitHub tokens, database passwor…
Codex's Windows sandbox fails silently when Smart App Control is enabled. Every 'sandboxed' execution runs on bare metal — the UI …
gitlawb-zero's 0.4.0 release prep ships its native binary as platform optionalDependencies, reworks Windows sandbox denial classif…
A merged Codex commit preserves parent sandbox enforcement during memory consolidation — closing a path where a sub-process could …