CVE-2025-36730: Windsurf Prompt Injection via Filename
A prompt injection vulnerability exists in Windsurft version 1.10.7 in Write mode using SWE-1 model.
It is possible to create a file name that will be appended to the user prompt causing Windsurf to follow its instructions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36730?
CVE-2025-36730 is classified as a high-severity vulnerability due to its potential for prompt injection.
How do I fix CVE-2025-36730?
To mitigate CVE-2025-36730, update to the latest version of Windsurf that addresses this prompt injection vulnerability.
What are the potential impacts of CVE-2025-36730?
CVE-2025-36730 could allow attackers to manipulate user prompts, leading to unintended file creation with potentially malicious content.
Which versions of Windsurf are affected by CVE-2025-36730?
Windsurf version 1.10.7 in Write mode using the SWE-1 model is specifically vulnerable to CVE-2025-36730.
Is CVE-2025-36730 exploitable remotely?
Yes, CVE-2025-36730 can be exploited remotely if attackers can provide crafted input to the vulnerable application.