// Alert

Claude threat report

Accomplish AI discovered SharedRoot, a sandbox escape vulnerability in Claude Cowork's local execution mode on macOS. An unprivileged user can exploit CVE-2026-46331 (pedit COW) to gain root access within the guest Linux VM, then access the host filesystem read-write via a mounted host root, allowing exfiltration of SSH keys, cloud credentials, and arbitrary files. Approximately 500,000 macOS users were affected prior to patching. Anthropic closed the disclosure as informative without issuing a fix; the latest Cowork version defaults to cloud execution to mitigate the issue, but local execution remains vulnerable.

// Get alerts for Claude