A newly disclosed vulnerability, dubbed GhostApproval, affects at least six AI coding assistants, potentially allowing malicious code to bypass security checks and gain system access. The flaw exploits symlink vulnerabilities to trick users into approving actions that could write to sensitive files like SSH keys. While some assistants from AWS, Cursor, and Google have been patched, others from Anthropic, Augment, and Windsurf remain vulnerable. AI
IMPACT This vulnerability could allow attackers to gain unauthorized system access through AI coding tools, highlighting the need for enhanced security in AI-powered development environments.
RANK_REASON Disclosure of a security vulnerability in AI coding assistant products.
Read on Mastodon — fosstodon.org →
AI-generated summary · Google Gemini · from 3 sources. How we write summaries →