Security researchers at Ox Security have identified that the AI-powered code editors Windsurf and Cursor, both forks of Visual Studio Code, are running outdated versions of Electron and Chromium, exposing over 1.8 million users to at least 94 known and previously patched security vulnerabilities. These vulnerabilities include serious issues such as remote code execution and sandbox escape bugs, with a particular focus on CVE-2025-7656, an integer overflow flaw in the V8 JavaScript engine that can be exploited via malicious deep links, infected Markdown previews, or booby-trapped repositories. The researchers demonstrated successful exploitation of this flaw, showing the potential for denial-of-service and arbitrary code execution within the IDEs, which could lead to developer workstation compromise, data theft, or source code manipulation.
Despite responsible disclosure of these risks, vendor responses have been inadequate. Cursor dismissed the vulnerability as "out of scope," claiming it only caused a self-inflicted crash, a stance criticized by security experts for underestimating the risk of memory corruption and more severe attacks. Windsurf has not issued any official mitigation or security advisory. The continued use of outdated Electron and Chromium components in these widely used development tools leaves a significant portion of the developer community exposed to active threats that have already been addressed in newer software versions.

See affected versions and whether adversaries are exploiting it.
4 events from the most recent confirmed update back to the earliest known activity.
News reports disclosed that the two AI IDEs, used by about 1.8 million developers combined, still contained more than 94 known patched Chromium and V8 flaws because of outdated Electron dependencies.
Following disclosure, Cursor reportedly dismissed the researchers' findings as out of scope, while Windsurf did not respond, leaving the identified Chromium and V8 issues unaddressed.
Ox Security demonstrated a proof-of-concept exploit for CVE-2025-7656, a V8 integer overflow, causing denial of service in Cursor and warning that arbitrary code execution may also be possible.
Ox Security said it began responsible disclosure on October 12, 2025, warning that Cursor and Windsurf ship outdated Electron versions exposing users to at least 94 already-patched Chromium and V8 vulnerabilities.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.