What is CVE-2025-59536?
The source code of Anthropic's Claude Code tool was leaked via npm and is being weaponized by threat actors. Organizations should immediately audit their npm dependencies, remove suspicious packages, and monitor systems.
Azərbaycanca: Anthropic-in Claude Code alətinin qaynaq kodu npm vasitəsilə sızdırılıb və təhlükə aktorları bundan istifadə edir. Təşkilatlar dərhal npm-dən asılılıqlarını yoxlamalı, şübhəli paketləri təmizləməli və sistemləri monitorinq etməlidir.
FAQ2
Which threat actors are exploiting CVE-2025-59536?
The text does not disclose specific threat actor groups.
What measures should organizations take regarding CVE-2025-59536?
Organizations should immediately audit their npm dependencies, remove suspicious packages, and monitor systems.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.