A critical one-click remote code execution (RCE) vulnerability affects three of the world’s most widely used code editors: Cursor, Microsoft VS Code, and Google Antigravity. The flaw, uncovered by AISLE’s AI-powered vulnerability analyzer, put an estimated 50 million software developers at risk of silent, total system compromise with nothing more than a single click on a malicious link. The vulnerability has since been patched across all three platforms, but its discovery highlights how quickly security flaws can propagate across AI-native developer tooling. 1-Click RCE Vulnerability in Code Editors The exploit hinged on a deceptively simple mechanism: an attacker could embed a malicious link inside a Git commit...
Läs hela artikeln hos källan.
Kommentarer (0)
Inga kommentarer ännu. Bli först med att kommentera!