A security flaw in Cursor's command-line tool has been identified, which allows cloned repositories to run commands on a developer's machine without prior trust verification. Reported by Manifold Security, the issue concerns Cursor's worktree feature that inadvertently runs commands from a configuration file without sufficient safeguards. Despite a swift fix implemented three days post-report, Cursor classified the issue as 'informative,' denying it had security implications. Developers are advised to update to the latest build to mitigate risks.
Cursor CLI flaw lets cloned repos run commands on dev machines
CyberSIXT Evidence Panel
Primary Source
manifold.security
Article by CyberSIXT
Timeline Coverage
Swipe to explore timeline
-
Cursor CLI flaw lets cloned repos run commands on dev machines
www.infosecurity-magazine.com
-
Cloned Git Repos Exploit Cursor Flaw to Run Windows Code
thehackernews.com
-
Cursor IDE flaw lets hackers run code via poisoned repo
darkreading.com