Last seen June 26, 2026

Cursor AI code editor Remote Code Execution Vulnerability

Amazon Q Vulnerability: Compromise via MCP Auto-Execution wiz.io

Technical Severity
Low severity
Lifecycle Status

STABLE

What Happened

Amazon Q Vulnerability: Compromise via MCP Auto-Execution wiz.io

Why This Matters

The evidence matters to defenders using Cursor AI code editor because it could let an attacker run code in affected environments.

Recommended Action

Confirm whether may is present in your environment, compare your versions against the report, and apply available vendor patches or mitigations.

Exposure

My Interests Exposure

Exposure unknown

Recommended Response
Last Seen

Jun 26, 2026 12:30

Exposure reason: This incident does not currently match a technology in My Interests.

Exploitation status: UNKNOWN

Primary entities:

Amazon AWSAnthropicClaudeClaude CodeCursor AI code editorAI Agents

Authoritative Intelligence

CVE CVE-2025-54136 Incident identifier

EPSS is a vulnerability exploitation probability signal, not proof that your environment is exposed. CISA KEV means known exploitation of the vulnerability, not that your system was exploited.

Public GitHub References

Search GitHub for public repositories that mention this CVE. BugSkan only lists repository metadata as a defensive awareness signal โ€” it does not fetch or display exploit code.

Timeline

  • Incident first seen
    Aug 05, 2025 05:30

    BugSkan first recorded this incident.

  • Cursor AI Code Editor Vulnerability Enables RCE via Malicious MCP File Swaps Post Approval - The Hacker News
    Aug 05, 2025 05:30

    thehackernews.com ยท Vulnerability

  • Amazon Q Vulnerability: Compromise via MCP Auto-Execution - wiz.io
    Jun 26, 2026 12:30

    news.google.com ยท Vulnerability

  • Latest observed development
    Jun 26, 2026 12:30

    Most recent source or update associated with this incident.

Sources

Cursor AI Code Editor Vulnerability Enables RCE via Malicious MCP File Swaps Post Approval - The Hacker News

thehackernews.com ยท Aug 05, 2025 05:30

CVE-2025-54136, codenamed MCPoison, is a high-severity vulnerability in the Cursor AI code editor that allows for remote code execution (RCE). It exploits how the editor handles Model Context Protocol (MCP) configurations, permitting an attacker to silently swap a previously approved, benign configuration with a malicious payload without re-prompting the user.

Open publisher source
Amazon Q Vulnerability: Compromise via MCP Auto-Execution - wiz.io

news.google.com ยท Jun 26, 2026 12:30

Amazon Q Vulnerability: Compromise via MCP Auto-Execution wiz.io

Open publisher source

Other BugSkan incidents that share identifiers, products, or vendors with this report.

My Interests Match

Want personalized relevance?

Create an account to see which incidents overlap with your interests.

โ† Back to incident intelligence