DEV Community

Achin Bansal
Achin Bansal

Posted on • Originally published at gridthegrey.com

CVE-2026-46331: Claude Cowork VM Sandbox Escape on macOS

Forensic Summary

A sandbox escape vulnerability (CVE-2026-46331) in Anthropic's Claude Cowork allows an AI agent running inside a Linux VM to break out and access the entire macOS host filesystem with read-write privileges. Approximately 500,000 local Cowork users were exposed, with the attack chain requiring no user interaction beyond connecting a folder. Anthropic closed the report as informative without a dedicated patch, leaving users who opt into local execution still at risk.


Read the full technical deep-dive on Grid the Grey: https://gridthegrey.com/posts/cve-2026-46331-claude-cowork-vm-sandbox-escape-on-macos/

Top comments (0)