Artificial Intelligence Unpatched Cursor Vulnerability Exposes Users to Code Execution An attacker can create a malicious repository containing a git.exe in the project root, and Cursor executes it automatically. Ionut ArghireJuly 15, 2026
Artificial Intelligence Critical Cursor AI Code Editor Flaws Could Lead to OS-Level Remote Code Execution The DuneSlide vulnerabilities enable zero-click prompt injection attacks that escape Cursor's sandbox and execute arbitrary code on the underlying operating system. Ionut ArghireJuly 3, 2026
Artificial Intelligence Cursor AI Vulnerability Exposed Developer Devices An indirect prompt injection could be chained with a sandbox bypass and Cursor’s remote tunnel feature for shell access to machines. Ionut ArghireApril 17, 2026
Artificial Intelligence Major Enterprise AI Assistants Can Be Abused for Data Theft, Manipulation Zenity has shown how AI assistants such as ChatGPT, Copilot, Cursor, Gemini, and Salesforce Einstein can be abused using specially crafted prompts. Eduard KovacsAugust 6, 2025
Vulnerabilities Several Vulnerabilities Patched in AI Code Editor Cursor Attackers could silently modify sensitive MCP files to trigger the execution of arbitrary code without requiring user approval. Ionut ArghireAugust 4, 2025