CVE-2025-32018
Last modified
CVE-2025-32018 is a high-severity vulnerability rated 8/10 on the CVSS scale. Cursor is a code editor built for programming with AI. In versions 0.45.0 through 0.48.6, the Cursor app introduced a regression affecting the set of file paths the Cursor Agent is permitted to modify automatically. EPSS estimates a 0.32% chance of exploitation in the next 30 days.
Description
Cursor is a code editor built for programming with AI. In versions 0.45.0 through 0.48.6, the Cursor app introduced a regression affecting the set of file paths the Cursor Agent is permitted to modify automatically. Under specific conditions, the agent could be prompted, either directly by the user or via maliciously crafted context, to automatically write to files outside of the opened workspace. This behavior required deliberate prompting, making successful exploitation highly impractical in real-world scenarios. Furthermore, the edited file was still displayed in the UI as usual for user review, making it unlikely for the edit to go unnoticed by the user. This vulnerability is fixed in 0.48.7.
Metrics
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-32018?
How severe is CVE-2025-32018?
How do I fix CVE-2025-32018?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-32012Jellyfin is an open source self hosted media server. In vers…7.5
- CVE-2025-32013LNbits is a Lightning wallet and accounts system. A Server-S…7.5
- CVE-2025-32014estree-util-value-to-estree converts a JavaScript value to a…6.9
- CVE-2025-32015FreshRSS is a self-hosted RSS feed aggregator. Prior to vers…6.7
- CVE-2025-32016Microsoft Identity Web is a library which contains a set of …4.7
- CVE-2025-32017Umbraco is a free and open source .NET content management sy…8.8
- CVE-2025-32019Harbor is an open source trusted cloud native registry proje…4.1
- CVE-2025-3202A vulnerability classified as critical has been found in age…9.1
- CVE-2025-32020The crud-query-parser library parses query parameters from H…9.3
- CVE-2025-32021Weblate is a web based localization tool. Prior to version 5…7.5
- CVE-2025-32022Finit provides fast init for Linux systems. Finit's urandom …4.6
- CVE-2025-32023Redis is an open source, in-memory database that persists on…7.8
Are you affected by CVE-2025-32018?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
