Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code Execution
A critical vulnerability in Cursor, a code editor, allows bad actors to execute arbitrary code with elevated privileges on Windows systems. Simply by placing a file named git.exe in the root of a cloned repository, attackers can run malicious code without any user interaction or warning. This flaw poses a significant risk as it can expose sensitive information like SSH keys and cloud tokens. The issue highlights the importance of secure coding practices and the potential dangers of automated processes in software that handle user data.
Original Source
Read the full article at Thehackernews →KhanList aggregates and links to publicly available news content. We do not host full articles from third-party sources. Always verify important information with original sources.