Cursor 0day: When Full Disclosure Becomes the Only Protection Left

Source: goodToKnow July 20, 2026

A critical Cursor IDE flaw auto-executes malicious binaries planted in a project repo with no user interaction, still unfixed after seven months of disclosure attempts

Read external article →

security ai tooling