Sandboxing Bug in Anthropic Sandbox Runtime Affects Network Security
CVE-2025-66479
What is CVE-2025-66479?
The Anthropic Sandbox Runtime, a tool designed to enforce filesystem and network restrictions on processes at the operating system level, has a significant flaw. Prior to version 0.0.16, an issue in its sandboxing logic allowed processes to bypass network restrictions if the sandbox policy did not specify any allowable domains. This vulnerability may enable sandboxed applications to make unauthorized network requests, effectively undermining the intended security measures of the tool. A critical patch to resolve this issue is available in version 0.0.16.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
sandbox-runtime < 0.0.16
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved
