Anthropic Sandbox Runtime Incorrectly Implemented Network Sandboxing
Low severity
GitHub Reviewed
Published
Dec 4, 2025
in
anthropic-experimental/sandbox-runtime
•
Updated Dec 4, 2025
Description
Published to the GitHub Advisory Database
Dec 4, 2025
Reviewed
Dec 4, 2025
Published by the National Vulnerability Database
Dec 4, 2025
Last updated
Dec 4, 2025
Due to a bug in sandboxing logic,
sandbox-runtimedid not properly enforce a network sandbox if the sandbox policy did not configure any allowed domains. This could allow sandboxed code to make network requests outside of the sandbox. A patch for this was released in v0.0.16.Thank you to https://github.com/bendrucker for reporting this issue!
References