BREAKING
Unpatched Cursor Flaw Runs Code on Windows
How the attack fires
1
Clone poisoned repo
↓
2
git.exe in root
↓
3
Cursor runs it
↓
4
Re-runs while open
0
mo
open unpatched
0
+
version releases
0
Cursor v3.2.16
0
M
active users
0
M
paying users
0
enterprise customers
Risk vs mitigation
The danger
●
No prompt or approval
●
Re-runs each open
●
Windows build affected
Mitigations
●
AppLocker path rules
●
Open repos in a VM
●
Treat repos as untrusted
Sandbox untrusted repos until fixed
AI NEWS BLITZ
Researchers warn an unpatched Cursor flaw can silently run code when you open a repository.