A version of the AI coding tool in Anthropic's npm registry included a source map file, which leads to the full proprietary ...
Four vulnerabilities in CrewAI could be chained together via prompt injection for sandbox escape, remote code execution, and ...
Claude Code 2.1.88 leak exposed 512,000 lines via npm error, fueling supply chain risks and typosquatting attacks.
The path traversal flaw, allowing access to arbitrary files, adds to a growing set of input validation issues in AI pipelines.