Skip to content

"Bash(xargs *" gives all command access #4

@nickolay-kondratyev

Description

@nickolay-kondratyev

https://github.com/ksamaschke/claude-code-vm/blob/5e974a43837e9ccdec3c5380c502b3bb8ea8f264/config/claude-settings.template.json#L246

Anything is allowed to be piped into xargs to be executed.

Bash(xargs *

Might as well just give permissions for Bash(*) for clarity then (and remove all other Bash specific permissions).

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions