CVE-2026-73218
Received Received - Intake

Privileged Container Execution in Cursor IDE for macOS

Vulnerability report for CVE-2026-73218, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-11

Last updated on: 2026-08-11

Assigner: GitHub, Inc.

Description

Cursor is a code editor built for programming with AI. Prior to 3.0.0, Cursor IDE for macOS allows an agent running in Auto-Run Sandbox mode, when Docker Desktop and the Dev Containers CLI are installed, to launch a privileged container and mount Docker's virtiofs0, granting read and write access to the user's home directory and enabling host command execution with the user's privileges without an additional permission prompt. This issue is fixed in version 3.0.0.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-11
Last Modified
2026-08-11
Generated
2026-08-11
AI Q&A
2026-08-11
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
cursor cursor_id_e 3.0.0
cursor cursor to 3.0.0 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-269 The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

Cursor IDE for macOS before version 3.0.0 has a sandbox escape vulnerability. When Docker Desktop and Dev Containers CLI are installed, an agent in Auto-Run Sandbox mode can launch a privileged container. This grants access to Docker's virtiofs0, allowing read/write access to the user's home directory and enabling host command execution with the user's privileges without additional prompts.

Impact Analysis

An attacker could exploit this to access or modify files in your home directory, execute commands on your system with your privileges, or potentially escalate privileges further. This could lead to data theft, malware installation, or unauthorized system changes.

Compliance Impact

This vulnerability could lead to unauthorized access to sensitive data, violating GDPR's data protection requirements or HIPAA's privacy and security rules. Organizations using Cursor IDE may face compliance breaches if exploited, potentially resulting in legal penalties or reputational damage.

Mitigation Strategies

Update Cursor IDE to version 3.0.0 or later to address the vulnerability. If updating is not immediately possible, disable Auto-Run Sandbox mode and avoid using Docker Desktop with Cursor IDE until patched.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-73218. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart