CNNVD-202510-537 Information

CNNVD ID

CNNVD-202510-537

CVE-2025-61589

  • CNNVD Published: 2025-10-03

Description (Chinese)

Cursor是Cursor开源的一个 AI 代码编辑器。 Cursor 1.6及之前版本存在信息泄露漏洞,该漏洞源于Mermaid允许嵌入图像,可能导致敏感信息泄露。

Description (English)

Cursor is an AI code editor at Cursor Open Source. Cursor 1.6 and earlier versions had a leak that originated from Mermaid ’ s permission to embed images and could lead to the disclosure of sensitive information.

Hazard Level

High

Vulnerability Type

信息泄露

Affected Vendor

Cursor

Published

2025-10-03

Last Modified

2026-02-24

References

https://github.com/cursor/cursor/security/advisories/GHSA-43wj-mwcc-x93p https://github.com/cursor/cursor/security/advisories/GHSA-xw2x-252g-97w2

Patch

https://cursor.com/download

Share on: