Critical Claude Code Vulnerabilities Allowed Remote Code Execution and API Key Theft
Check Point Research discovers critical flaws in Claude Code exploiting hooks, MCP servers, and env variables to achieve RCE and exfiltrate API credentials from developer machines.