Sploitus

CVE-2025-54133

No indexed exploits for CVE-2025-54133 yet

Cursor is a code editor built for programming with AI. In versions 1.17 through 1.2, there is a UI information disclosure vulnerability in Cursor's MCP (Model Context Protocol) deeplink handler, allowing attackers to execute 2-click arbitrary system commands through social engineering attacks. When users click malicious `cursor://anysphere.cursor-deeplink/mcp/install` links, the installation dialog does not show the arguments being passed to the command being run. If a user clicks a malicious deeplink, then examines the installation dialog and clicks through, the full command including the arguments will be executed on the machine. This is fixed in version 1.3.

Affected products
Cursor
Anysphere Cursor
< 1.3
Fix
Available
CVSS 3.1
9.6 CRITICAL
EPSS
0.4% (29th percentile)
Weakness
CWE-200, CWE-78
NVD status
Analyzed
Published
2025-08-01
CVE-2025-54133 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2025-54133 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2025-54133 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.