issue a fix for CVE-2025-54135 if it applies #1317

Closed
opened 2026-02-16 17:30:24 -05:00 by yindo · 2 comments
Owner

Originally created by @ajoslin103 on GitHub (Aug 15, 2025).

Originally assigned to: @thdxr on GitHub.

issue a fix for CVE-2025-54135 if it applies

ref: https://www.bleepingcomputer.com/news/security/ai-powered-cursor-ide-vulnerable-to-prompt-injection-attacks/

Originally created by @ajoslin103 on GitHub (Aug 15, 2025). Originally assigned to: @thdxr on GitHub. issue a fix for CVE-2025-54135 if it applies ref: https://www.bleepingcomputer.com/news/security/ai-powered-cursor-ide-vulnerable-to-prompt-injection-attacks/
yindo closed this issue 2026-02-16 17:30:24 -05:00
Author
Owner

@rekram1-node commented on GitHub (Aug 15, 2025):

summary:
LLM prompt injections cause it to manipulate it's own mcp configuration without user confirmation leading to potential pwnage

@rekram1-node commented on GitHub (Aug 15, 2025): summary: LLM prompt injections cause it to manipulate it's own mcp configuration without user confirmation leading to potential pwnage
Author
Owner

@rekram1-node commented on GitHub (Dec 27, 2025):

[automated] Closing due to 90+ days of inactivity. Feel free to reopen if you still need this!

@rekram1-node commented on GitHub (Dec 27, 2025): [automated] Closing due to 90+ days of inactivity. Feel free to reopen if you still need this!
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: anomalyco/opencode#1317