A severe vulnerability in the popular AI-powered code editor Cursor IDE, dubbed “CurXecute,” allows attackers to execute arbitrary code on developers’ machines without any user interaction. The vulnerability, tracked as CVE-2025-54135 with a high severity score of 8.6, affects all Cursor IDE versions prior to 1.3 and has been successfully patched following responsible disclosure. Key […]
The post AI-Powered Code Editor Cursor IDE Vulnerability Enables Remote Code Without User Interaction appeared first on Cyber Security News.
Read the original article: