Browse all 7 CVE security advisories affecting zed-industries. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-27976 | Zed Extension Sandbox Escape via Tar Symlink Following — zedCWE-61 | 8.8 | High | 2026-02-25 |
| CVE-2026-27967 | Symlink Escape in Agent File Tools — zedCWE-59 | 7.1 | High | 2026-02-25 |
| CVE-2026-27800 | Zed has Zip Slip Path Traversal in Extension Archive Extraction — zedCWE-22 | 7.4 | High | 2026-02-25 |
| CVE-2026-25805 | Zed does not show Parameter Values for MCP Tool Calls. Users cannot detect tool poisoning. — zedCWE-356 | 6.4 | Medium | 2026-02-10 |
| CVE-2025-68433 | Zed IDE MCP Context Server Configuration Arbitrary Code Execution — zedCWE-77 | 7.8 | High | 2025-12-17 |
| CVE-2025-68432 | Zed IDE LSP Binary Configuration Arbitrary Code Execution — zedCWE-77 | 7.8 | High | 2025-12-17 |
| CVE-2025-55012 | Zed AI Agent Remote Code Execution — zedCWE-288 | 8.4AI | HighAI | 2025-08-11 |
This page lists every published CVE security advisory associated with zed-industries. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.