logo

Cursor Autorun Flaw Lets Repositories Execute Code Without Consent

ID: 5d587d4a-75c3-56a7-99ea-81974c5e6ef9

STIX ID: report--5d587d4a-75c3-56a7-99ea-81974c5e6ef9

Feed Name: Infosecurity Magazine (News)

Threat Score
70/100

Date Published: 2025-09-10

Date Updated: 2026-04-22

...
...

A newly disclosed vulnerability in the Cursor VS Code extension's "autorun" feature can execute hidden commands automatically when a repository folder is opened, potentially allowing attackers to steal tokens/API keys, alter files, or plant persistent malware. Oasis Security researchers published the finding and industry experts warn this increases software supply-chain risk—especially since Workspace Trust is disabled by default in Cursor—while noting Cursor has been targeted previously.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.