Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-9gqj-5w7c-vx47 | Anthropic Sandbox Runtime Incorrectly Implemented Network Sandboxing |
Fri, 05 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Dec 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Anthropic
Anthropic sandbox-runtime |
|
| Vendors & Products |
Anthropic
Anthropic sandbox-runtime |
Thu, 04 Dec 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Anthropic Sandbox Runtime is a lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container. Prior to 0.0.16, due to a bug in sandboxing logic, sandbox-runtime did not properly enforce a network sandbox if the sandbox policy did not configure any allowed domains. This could allow sandboxed code to make network requests outside of the sandbox. A patch for this was released in v0.0.16. | |
| Title | Anthropic Sandbox Runtime Incorrectly Implemented Network Sandboxing | |
| Weaknesses | CWE-693 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-12-05T17:04:34.471Z
Reserved: 2025-12-02T17:09:52.016Z
Link: CVE-2025-66479
Updated: 2025-12-05T17:04:31.562Z
Status : Deferred
Published: 2025-12-04T21:16:09.393
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-66479
No data.
OpenCVE Enrichment
Updated: 2025-12-05T10:52:29Z
Github GHSA