All 33 CVE vulnerabilities found in cursor, with AI-generated Chinese analysis, references, and POCs.
This page documents Common Weakness Enumeration (CWE) vulnerabilities associated with the Cursor code editor, developed by the vendor Cursor AI. It aggregates security reports and advisory data related to flaws in the software’s architecture, implementation, or configuration, covering publicly disclosed incidents from January 2023 through the present. The scope includes issues such as remote code execution, privilege escalation, and information disclosure specific to the Cursor development environment or its underlying Electron framework dependencies. Visitors to this page can track the vendor’s security response timelines and analyze the frequency and severity of reported advisories over time. Users may also use this resource to understand the prevalence and impact of specific weakness classes within the context of modern AI-enhanced IDEs. Additionally, developers and security analysts can look up the product’s historical vulnerability record to assess risk exposure and compare mitigation strategies against similar tools. The data is organized to facilitate quick identification of recurring patterns, helping teams prioritize patching efforts and update dependencies. This aggregation serves as a reference point for understanding the security posture of Cursor relative to its peer group. By centralizing these records, the page aims to provide transparency into the product’s evolution and the industry’s response to identified defects. It does not provide real-time alerts or private disclosure details, focusing instead on established public knowledge. Researchers can utilize this information to benchmark security practices or conduct longitudinal studies on IDE reliability.
Vendor: getcursor
All 33 known CVE vulnerabilities affecting cursor with full Chinese analysis, references, and POCs where available.