Security issues on Windows — page 3

Issues the maintainers labelled both platform:windows and area:security.

255 issues · 70 open · 185 resolved (73%) · first seen May 20, 2025

Is this getting better or worse?

This class of problem is still growing. 98 new reports in the last 90 days vs 77 in the 90 before — +27%. The open backlog peaked at 70 in 2026-08 and sits at 70 today.

0 18 35 53 70 2025-052025-102026-032026-08
2025-05 — First reports2026-08 — Peak backlog (70 open)

Derived by counting each matching issue from its creation date until it closed. First-party computation over the anthropics/claude-code tracker — the trend is not published anywhere upstream.

Which builds report this

123 of these reports name the Claude Code build they were running, spanning 77 releases. Heaviest reporters:

Report volume, not a defect count: an issue can mention a build without that build having caused the failure. Versions come from the version string in the bug-report template, matched against real published tags.

Do these get fixed?

Median time to close is 38 days across 185 closures. Of the 185 closures with a recorded reason, 21% were closed as completed and 146 as not-planned or duplicate. The most recent completed fix landed in 2026-08.

Workarounds reported by the community

55 of these issues post a workaround someone says worked. The highest-engagement ones:

bypassPermissions mode not working in VS Code extension
issue was reproduced on after upgrade IDE-VSCODE-CC-01-v1: Workaround — bypassPermissions in VSCode Extension Linked rule: [IDE-VSCODE-CC-01-v1](IDE-VSCODE-CC-01-v1.md) Upstream: [anthropics/claude-code 20536]( --- Envir…
Found in the thread of #20536 · still open
[BUG] Permission to read and edit files for session not being respected
…It was working fine before the update this afternoon. Note As a workaround I'm launching claude with the --dangerously-skip-permissions option. This works, however, I'm closely watching the console to ensure it hasn't g…
Found in the description of #7104 · resolved
[BUG] Claude Code will not do anything without manual authorisation every single step
Thanks for reporting this bug, we're working on a fix. In the meantime, if you need to work around this issue, you can temporarily downgrade to v1.0.102 where this functionality is working correctly.
Found in the thread of #7161 · resolved
Bug Report: Path Patterns in allowedTools Not Honored in Non-Interactive Mode
…laude Code's security model in automated contexts. The only workaround is to use simple tool permissions without path patterns: bashclaude config add allowedTools Write No path pattern Or specify permissions directly via…
Found in the description of #1188 · resolved
[BUG] Sub agents can't use tools properly: `Permission to use xxx has been auto-denied in dontAsk mode` even with `--dangerously-skip-permissions`
Related to 11881, fix allegedly incoming. In the meantime seems like rolling back to 2.0.42 helps some users.
Found in the thread of #11934 · resolved

Excerpts are quoted from the linked issue so you can judge relevance before opening it. Threads that only ask for a workaround, or report that there is none, are excluded. These are community suggestions, not official guidance from Anthropic — read the full thread before applying one.

Matching issues 201–255

Ranked by community engagement (reactions weighted over comments).

Related aggregations

  1. Security issues on Linux

    773 issues
  2. Security issues on macOS

    700 issues
  3. Security issues on VS Code

    82 issues
  4. Terminal UI issues on Windows

    1,531 issues
  5. The desktop app issues on Windows

    1,518 issues
  6. Core CLI issues on Windows

    1,287 issues
  7. Tool calls issues on Windows

    891 issues
  8. Cowork issues on Windows

    872 issues