A new proof-of-concept attack shows that malicious Model Context Protocol servers can inject JavaScript into Cursor’s browser — and potentially leverage the IDE’s privileges to perform system tasks.
The Model Context Protocol (MCP) is redefining how artificial intelligence (AI) interacts with external systems and data sources. Acting as a universal interface, MCP simplifies the process of ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results