Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2025-36730

17
FAUCET Score

CVE-2025-36730 describes a prompt injection vulnerability in Windsurft version 1.10.7 when operating in Write mode with the SWE-1 model. An attacker can craft a malicious filename that appends instructions to the user's prompt, manipulating Windsurft's behavior. This vulnerability carries a CVSS score of 4.6 (Medium), indicating a local attack vector requiring user interaction, with potential impacts on confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
WindsurfWindsurf
1.10.7CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 4.0

4.6MEDIUM

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
LOCAL
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
NONE
User Interaction
ACTIVE
VS Confidentiality
LOW
VS Integrity
LOW
VS Availability
LOW
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.18%
Probability of exploitation in next 30 days
EPSS Percentile
7.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0018 is in the 9th percentile among its peer group of 5,765 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (6)

3cxvendor investigatingvia llm_extracted
burp_suitevendor investigatingvia llm_extracted
entrustvendor investigatingvia llm_extracted
moxavendor investigatingvia llm_extracted
proxmoxvendor investigatingvia llm_extracted
qwikvendor investigatingvia llm_extracted

Vendor Advisories (6)

proxmoxllm-proxmox-23a6b55575a4129dMEDIUM

Windsurf Prompt Injection via Filename

Oct 14, 2025
moxallm-moxa-3d50932e797c6109MEDIUM

Windsurf Prompt Injection via Filename

Oct 14, 2025
entrustllm-entrust-e23a23cfb762c606MEDIUM

Windsurf Prompt Injection via Filename

Oct 14, 2025
3cxllm-3cx-6975da7b42d71fd7MEDIUM

Windsurf Prompt Injection via Filename

Oct 14, 2025
burp_suitellm-burp_suite-5a33f52803d6abb2MEDIUM

Windsurf Prompt Injection via Filename

Oct 14, 2025
qwikllm-qwik-1bcd6affd509c1e1MEDIUM

Windsurf Prompt Injection via Filename

Oct 14, 2025

References

tenable.com / security/research/tra-2025-47