CVE-2026-26268: exploitation status and patch state

CVE-2026-26268 · CVSS 8.0 HIGH · EPSS 1%

Cursor is a code editor built for programming with AI. Sandbox escape via writing .git configuration was possible in versions prior to 2.5. A malicious agent (ie prompt injection) could write to improperly protected .git settings, including git hooks, which may cause out-of-sandbox RCE next time they are triggered. No user interaction was required as Git executes these commands automatically. Fixed in version 2.5.

Is CVE-2026-26268 exploited?

Which products and versions are affected?

No affected package list recorded here yet.

Is there a patch?

No patch identifier recorded here yet.

What PlainSec published about CVE-2026-26268

Primary sources

What this record does not say

KEV and EPSS are re-checked daily. Record last updated 2026-08-11.