Cursor Extension Flaw Exposes Developer API Keys
ID: ed6f1425-a6cc-544b-a218-e16ed444e562
STIX ID: report--ed6f1425-a6cc-544b-a218-e16ed444e562
Feed Name: Infosecurity Magazine (News)
Threat Score
A high-severity vulnerability in the Cursor AI developer tool allows any installed extension to access credentials stored in an unprotected local SQLite database (API keys, session tokens, cached config) without user interaction; LayerX assigned CVSS 8.2 and demonstrated silent exfiltration risks, and the issue remained unresolved as of April 28, 2026.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
