V
Vexday
by TrueHacking
›
Briefing
Live
PT
ES
EN
Home
/
Technologies
/
Windsurf
Vulnerabilities in
Windsurf
2 results
CVE-2025-62353
CRITICAL
A path traversal vulnerability in all versions of the Windsurf IDE enables a threat actor to read and write arbitrary local files in and out
EPSS
0.6%
CVE-2025-36730
MEDIUM
Windsurf Prompt Injection via Filename
EPSS
0.2%