Skip to content
Cline Bot AI Agent Exposed to Data Theft and Code Execution Vulnerabilities

Cline Bot AI Agent Exposed to Data Theft and Code Execution Vulnerabilities

First seen 2 Dec 2025, 18:33 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

Mindgard has identified four critical security vulnerabilities in the Cline Bot AI coding agent. These flaws allow for prompt injection attacks, which can lead to API key theft and remote code execution. Users of the popular VSCode extension are at risk of data leakage due to these vulnerabilities.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

More articles in this cluster (4)

Following this threat?

Track Cline AI in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed