CVE-2025-64108: Cursor's Sensitive File Modification can Lead to NTFS Path Quirks
Cursor is a code editor built for programming with AI. In versions 1.7.44 and below, various NTFS path quirks allow a prompt injection attacker to circumvent sensitive file protections and overwrite files which Cursor requires human approval to overwrite. Modification of some of the protected files can lead to RCE. Must be chained with a prompt injection or malicious model attach. Only affects systems supporting NTFS. This issue is fixed in version 2.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64108?
CVE-2025-64108 is classified as a critical vulnerability due to its potential to allow unauthorized file modifications.
How do I fix CVE-2025-64108?
To fix CVE-2025-64108, users should update Cursor to version 1.7.45 or later.
What versions of Cursor are affected by CVE-2025-64108?
CVE-2025-64108 affects Cursor versions up to and including 1.7.44.
What kind of attacks does CVE-2025-64108 enable?
CVE-2025-64108 allows attackers to perform prompt injection attacks that can circumvent sensitive file protections.
Is there a workaround for CVE-2025-64108?
Currently, the recommended workaround for CVE-2025-64108 is to upgrade the software to the fixed version.