RCE Flaw in AI-Assisted Coding Tool Poses Software Supply Chain Risk
ID: 03a3187e-69fc-5ef4-b889-6e65bcfa6065
STIX ID: report--03a3187e-69fc-5ef4-b889-6e65bcfa6065
Feed Name: Dark Reading
Date Published: 2025-08-05
Date Updated: 2026-04-21
Author: Elizabeth Montalbano, Contributing Writer
Check Point Research disclosed "MCPoison" (CVE-2025-54136), a critical flaw in Cursor's Model Context Protocol that lets an attacker silently modify approved MCP extensions to achieve persistent remote code execution and privilege escalation on developer machines (potentially exposing credentials and source code). The issue enables attackers with write access to a repository to embed reverse shells or arbitrary commands that execute whenever a project is opened or synced. Cursor released version 1.3 to enforce mandatory re-approval of any MCP changes and address this and the related "CurXecute" (CVE-2025-54135) prompt-injection flaw; organizations are advised to update immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
