CyberSecurityBoardThreat Intel · CVEs · Products
Critical CVEs

CVE-2026-50549: Cursor Symlink Vulnerability

June 25, 2026CVSS 9.3

A vulnerability in Cursor v3.0 and earlier allows malicious repositories to use symlinks to write to sensitive files outside the project directory, potentially leading to code execution or credential theft.