> Cursor Extension Flaw Exposes Developer API Keys
[DATE: 29/04/2026 15:00]
[LANGUAGE: EN]
Cursor flaw lets extensions steal API keys and session tokens without user interaction, according to researchers at LayerX