1-Click RCE Flaw in Cursor, VS Code, and Google Antigravity Exposes 50M Developers to Cyberattacks
ID: 84ef152c-ff56-52a1-9a90-dd2b126c92c3
STIX ID: report--84ef152c-ff56-52a1-9a90-dd2b126c92c3
Feed Name: cybersecurityNews.com
Threat Score
AISLE discovered a critical one-click RCE in VS Code, Cursor, and Google Antigravity where a malicious link in a Git commit message could execute arbitrary code with full terminal privileges, enabling credential theft and persistent malware; all three editors have been patched and users are advised to update immediately and rotate potentially exposed API keys.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
