EILMELDUNGEN LIVE
🔧 AI Nachrichten Alabama Launches Investigation Into OpenAI's Hack of Hugging Face(26.08.2026 um 01:00 Uhr)
🔧 AI Nachrichten OpenAI Releases Its Official Report On the Hugging Face Breach(27.08.2026 um 01:00 Uhr)
🕵️ SicherheitslückenApple Quietly Fixes iCloud Private Relay Vulnerability in iOS 26.6.1(25.08.2026 um 20:24 Uhr)
🔧 AI Nachrichten Etzioni on AI: An Opinionated Glossary of AI(23.08.2026 um 21:44 Uhr)
⚠️ Malware / Trojaner / VirenWordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords(24.08.2026 um 14:35 Uhr)
🔧 AI Nachrichten Alabama Launches Investigation Into OpenAI's Hack of Hugging Face(26.08.2026 um 01:00 Uhr)
🔧 AI Nachrichten OpenAI Releases Its Official Report On the Hugging Face Breach(27.08.2026 um 01:00 Uhr)
🕵️ SicherheitslückenApple Quietly Fixes iCloud Private Relay Vulnerability in iOS 26.6.1(25.08.2026 um 20:24 Uhr)
🔧 AI Nachrichten Etzioni on AI: An Opinionated Glossary of AI(23.08.2026 um 21:44 Uhr)
⚠️ Malware / Trojaner / VirenWordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords(24.08.2026 um 14:35 Uhr)

17 🕛 kürzlich 5 Min Lesezeit 8 Leser online ️ CVE-RADAR
0

GitHub Release: anthropics/claude-code v2.1.247 (27.08.2026)

↗ Quelle (GitHub · anthropics/claude-code)
🗣️ Stimme:
GitHub Release: anthropics/claude-code v2.1.247 (27.08.2026)
Avatar
$ git clone https://github.com/anthropics/claude-code.git

What's changed



  • Added the SendFeedback tool: when something goes wrong in a session, Claude can draft a feedback report for you to review and send from /feedback (turn off with the feedbackDrafts setting)

  • Added {id, text, cooldownSessions, priority} entries, tipsFile, and label to spinnerTipsOverride, so organizations can rotate their own tips alongside the built-in ones

  • Added a tip on Bash permission prompts pointing to auto mode, with a one-keystroke "Yes, and switch to auto mode" option

  • Added /claude-api cost-optimize to profile an existing project's Claude API spend and work through cost levers (caching, token hygiene, batch, effort, model choice) one measured change at a time

  • Updated the /claude-api skill with Admin API coverage (organization members, invites, workspaces, API keys, rate limit reports, workload identity federation, CMEK)

  • Fixed fast arrow-key + Enter sequences acting on the row above the one you navigated to in history search, /config, /mcp, /skills, background tasks, and /model

  • Fixed sub-agents dying on a first-call model 404: they now use the session's fallback model chain, and the error returned to the parent includes the error type, status, request id, and model

  • Fixed a hook or background agent that printed megabytes of error output being able to overflow the conversation and wedge the session on "Prompt is too long"

  • Fixed Ctrl keyboard shortcuts not firing under non-Latin (e.g. Cyrillic) keyboard layouts in kitty-protocol terminals

  • Fixed text like <35;150;7M being inserted into the prompt when a mouse report arrived split across reads right after the escape prefix

  • Fixed the Bash sandbox's after-command cleanup deleting a dotfile-managed ~/.claude/settings.json symlink (nix/home-manager, stow) when it is repointed outside the sandbox's writable area

  • Fixed /terminal-setup overwriting your entire Zed keymap.json instead of merging in its keybinding

  • Fixed /rename silently confirming when the session registry could not be updated; it now says other sessions may still show the old name

  • Fixed /compact and "Summarize from here" in sessions started with --agent summarizing under the default system prompt instead of the conversation's own

  • Fixed a background session showing "opening…" forever in claude agents after its terminal host process died; the row now fails within seconds with the reason, and Enter restarts it

  • Fixed unbounded memory growth when a hook's or background task's output file could not be written; the file now notes where output was lost

  • Fixed /install-github-app over SSH: the copy shortcut now says how the sign-in URL was copied instead of always claiming success, and the URL appears immediately when no browser can open

  • Fixed shell commands carried over from the foreground logging an internal error or showing a misleading [exited with code -1] line when they finish in background sessions

  • Fixed a version-less marketplace plugin's live cache directory being deleted and recreated on a second-scope install, which could disrupt a running session using it

  • Fixed Remote Control sessions started with /remote-control not reporting the working-tree diff to connected clients

  • Fixed self-hosted runner sessions reporting running before Claude Code had started, which could trigger a premature "Claude is waiting for your input" notification from the Claude desktop app

  • Fixed first-run setup exiting with "Unable to connect to Anthropic services" when managed settings configure Claude apps gateway sign-in and Anthropic endpoints are unreachable

  • Fixed cloud sessions (Claude Code on the web, desktop and mobile apps) sometimes showing the previous permission mode when you switch modes right after sending a message

  • Fixed cloud sessions going silent when the session's container restarts between turns while a background agent, shell, or monitor is still running — the resumed session now reports the lost work

  • Improved plugin marketplace hardening: names containing control or invisible characters are rejected, and marketplace-supplied text in /plugin and claude plugin output is escape-safe

  • Improved Bedrock, Vertex, and Foundry sessions (and any with telemetry disabled): Claude is now told when a configured MCP server failed to connect, instead of concluding its tools don't exist

  • Changed Sonnet 5's default auto-compact window to its full 1M context, so sessions on the 1M window now auto-compact at about 967K tokens instead of about 934K

  • Changed cross-session peer messages to collapse by default to a one-line Message from @<sender>: <first line> preview; Ctrl+O expands the full body

  • Changed terminal hyperlinks in rendered markdown: link targets that point at a network or automounter path, contain a control character, or lead with an invisible character now render as plain text

  • Changed the prompt-footer PR badge to skip its GitHub re-check on terminal refocus when the last check is under a minute old

  • Changed analytics to stay off from startup, not only after login, when managed settings force gateway login or a custom OAuth deployment is configured

  • Changed Claude apps gateway sign-in requests to identify Claude Code (a surface=claude_code device-authorization parameter and a claude-code/<version> User-Agent)

  • Changed organization sign-in enforcement to exit at start when the administrator's managed settings cannot be read, even if host-supplied or per-user Windows registry settings exist

Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf github.com.
↗ Original-Artikel auf github.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
181 Fachleser & IT-Security Experten haben diesen Report heute geteilt
Teilen mit Netzwerk & Team:

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 57%
🟡 In Evaluierung 21%
🟢 Keine Auswirkung 16%
Spannende Innovation 6%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload
1 Quelle
New SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode
1 Quelle
OpenAI Bans Russian ChatGPT Accounts Used to Run Influence Operation