CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Unpatched Cursor Vulnerability Exposes Users to Code Execution

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 2595

As cited

Copy frozen at (site build).

vulnerabilities

Unpatched Cursor Vulnerability Exposes Users to Code Execution

Cursor, a code editor, contains an unpatched vulnerability that allows attackers to execute arbitrary code by placing a malicious git.exe file in a project root directory, which the application runs automatically without user intervention. The flaw impacts users who clone or open repositories from untrusted sources.

Why it matters: Developers and teams using Cursor face immediate code execution risk when opening projects from external sources; patching status and mitigation steps should be verified immediately.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary