Claude Code is an agentic coding tool that allows users to create and manage code snippets. Due to errors in parsing shell commands related to $IFS and short CLI flags, it was possible for attackers to bypass the Claude Code read-only validation and trigger arbitrary code execution. This vulnerability poses a significant risk to organizations using the tool, as it could allow unauthorized access to sensitive data or execute malicious code.