30
Cursor Security Bug Allowed Repositories to Execute Commands Before Trust Verification
Cursor fixed a pre-trust bug letting untrusted repositories execute commands, then closed the report as informative.
A security flaw in the Cursor editor allowed repositories to execute commands before the user completed workspace trust verification. Cursor fixed the pre-trust code execution path within three days of receiving the report. The vendor then closed the report as informative, disputing the severity of the behavior.
50
35
35
30
30
30
35
30
35
30
30
30
30
30
30
30
30
30
30
30
30
30
30