Skip to content
ThreatCluster

Rogue MCP Servers Exploit Vulnerability in Cursor's Internal Browser

First seen 2 Dec 2025, 18:33 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

Hackers are exploiting a critical vulnerability in Cursor, an AI-powered code editor, by using compromised Model Context Protocol (MCP) servers to inject malicious code. This attack allows the rogue servers to manipulate Cursor's internal browser, potentially replacing legitimate login pages with attacker-controlled ones. The lack of integrity verification in Cursor's proprietary features makes it particularly susceptible to these attacks.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 202d ago How this analysis works

More articles in this cluster (2)

Following this threat?

Track XWorm, Cursor and CVE-2025-64446 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed