Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

cursor — Vulnerabilities & Security Advisories 33

All 33 CVE vulnerabilities found in cursor, with AI-generated Chinese analysis, references, and POCs.

This page documents Common Weakness Enumeration (CWE) vulnerabilities associated with the Cursor code editor, developed by the vendor Cursor AI. It aggregates security reports and advisory data related to flaws in the software’s architecture, implementation, or configuration, covering publicly disclosed incidents from January 2023 through the present. The scope includes issues such as remote code execution, privilege escalation, and information disclosure specific to the Cursor development environment or its underlying Electron framework dependencies. Visitors to this page can track the vendor’s security response timelines and analyze the frequency and severity of reported advisories over time. Users may also use this resource to understand the prevalence and impact of specific weakness classes within the context of modern AI-enhanced IDEs. Additionally, developers and security analysts can look up the product’s historical vulnerability record to assess risk exposure and compare mitigation strategies against similar tools. The data is organized to facilitate quick identification of recurring patterns, helping teams prioritize patching efforts and update dependencies. This aggregation serves as a reference point for understanding the security posture of Cursor relative to its peer group. By centralizing these records, the page aims to provide transparency into the product’s evolution and the industry’s response to identified defects. It does not provide real-time alerts or private disclosure details, focusing instead on established public knowledge. Researchers can utilize this information to benchmark security practices or conduct longitudinal studies on IDE reliability.

Vendor: getcursor

CVE ID Title CVSS Severity Published
CVE-2026-73218 Cursor: Sandbox escape via launching privileged containers CWE-269 7.7 High 2026-08-11
CVE-2026-73217 Cursor: Sandbox escape via tampered Python virtual environments CWE-693 7.7 High 2026-08-11
CVE-2026-63093 Cursor for Windows 3.2.16 RCE via Malicious git.exe in Workspace CWE-426 8.8 High 2026-07-17
CVE-2026-61613 Cursor: Cloud Agent Browser Sandbox Escape CWE-306 - - 2026-07-15
CVE-2026-50548 Cursor Desktop sandbox escape via agent-controlled working directory CWE-22 - - 2026-06-25
CVE-2026-50549 Cursor Desktop sandbox escape via symlink and failed path canonicalization CWE-59 - - 2026-06-25
CVE-2026-48124 Cursor Desktop sandbox escape via Claude hook configuration CWE-829 - - 2026-06-15
CVE-2026-31854 Cursor Affected by Arbitrary Code Execution via Prompt Injection and Whitelist Bypass CWE-78 8.8AI High AI 2026-03-11
CVE-2026-26268 Cursor sandbox escape via Git hooks CWE-862 8.1 High 2026-02-13
CVE-2026-22708 Cursor has a Terminal Tool Allowlist Bypass via Environment Variables CWE-15 9.1AI Critical AI 2026-01-14
CVE-2025-62354 Cursor 安全漏洞 CWE-78 9.8 Critical 2025-11-26
CVE-2025-64110 Cursor: Authentication Bypass Possible via New Cursorignore Write CWE-284 6.5AI Medium AI 2025-11-04
CVE-2025-64109 Cursor CLI Beta: Command Injection via Untrusted MCP Configuration CWE-78 8.8 High 2025-11-04
CVE-2025-64108 Cursor's Sensitive File Modification can Lead to NTFS Path Quirks CWE-22 8.8 High 2025-11-04
CVE-2025-64107 Cursor is Vulnerable to Path Manipulation Using Backslashes on Windows CWE-22 8.8 High 2025-11-04
CVE-2025-64106 Cursor: Speedbump Modal Bypass in MCP Server Deep-Link CWE-78 8.8 High 2025-11-04
CVE-2025-59944 Cursor IDE: Sensitive File Overwrite Bypass is Possible CWE-178 8.1 High 2025-10-03
CVE-2025-61593 Cursor CLI Agent: Sensitive File Overwrite Bypass CWE-178 7.1 High 2025-10-03
CVE-2025-61592 Cursor CLI: Arbitrary Code Execution Possible through Permissive CLI Config CWE-829 8.8 High 2025-10-03
CVE-2025-61591 Cursor CLI's Cursor Agent MCP OAuth2 Communication is Vulnerable to Remote Code Execution CWE-78 8.8 High 2025-10-03
CVE-2025-61590 Cursor is vulnerable to RCE via .code-workspace files using Prompt Injection CWE-94 7.5 High 2025-10-03
CVE-2025-61589 Cursor: Potential Information Leakage via Mermaid Diagram CWE-200 5.9 Medium 2025-10-03
CVE-2025-9190 TCC Bypass via misconfigured Node fuses in Cursor CWE-276 7.3AI High AI 2025-08-26
CVE-2025-54130 Cursor Agent is vulnerable prompt injection via Editor Special Files CWE-285 7.5 High 2025-08-05
CVE-2025-54135 Cursor Agent is vulnerable to prompt injection via MCP Special Files CWE-78 8.6 High 2025-08-05
CVE-2025-54136 Cursor's Modification of MCP Server Definitions Bypasses Manual Re-approvals CWE-78 7.2 High 2025-08-01
CVE-2025-54133 Cursor's MCP Install Deeplink Does Not Show Arguments in its User-Dialog CWE-78 8.1 - 2025-08-01
CVE-2025-54132 Cursor's Mermaid Diagram Tool is Vulnerable to an Arbitrary Image Fetch CWE-918 4.4 Medium 2025-08-01
CVE-2025-54131 Cursor bypasses its allow list to execute arbitrary commands CWE-77 6.4 Medium 2025-08-01
CVE-2025-49150 Cursor Agent Potentially Leaks Information using JSON schema CWE-200 5.9 Medium 2025-06-11

All 33 known CVE vulnerabilities affecting cursor with full Chinese analysis, references, and POCs where available.