{"data":{"id":"eb8541d5-9b13-4d88-a93f-5c3a097acfcd","title":"GHSA-3cj3-hqcr-g934: Cline: Cross-Origin WebSocket Hijacking in Cline Hub Dashboard (`/browser` endpoint)","summary":"The Cline Hub dashboard server accepts WebSocket connections on the `/browser` endpoint without checking the `Origin` header (the source of the connecting website), allowing any website a developer visits to hijack the connection and send commands. When `ROOM_SECRET` is not set (the default for local connections), this vulnerability is especially dangerous because attackers can inject malicious MCP servers (tools that extend Cline's capabilities) into the victim's settings file and execute arbitrary commands, since dashboard sessions automatically approve all tool actions by default.","solution":"N/A -- no mitigation discussed in source.","labels":["security"],"sourceUrl":"https://github.com/advisories/GHSA-3cj3-hqcr-g934","publishedAt":"2026-09-24T19:48:34.000Z","cveId":"CVE-2026-59723","cweIds":null,"cvssScore":null,"cvssSeverity":"high","severity":"high","attackType":["prompt_injection"],"issueType":"vulnerability","affectedPackages":["cline@< 3.0.30 (fixed: 3.0.30)"],"affectedVendors":[],"affectedVendorsRaw":["Cline"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":"unknown","epssScore":0.00249,"patchAvailable":true,"disclosureDate":"2026-09-24T19:48:34.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"trivial","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"api","llmSpecific":false,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":["AML.T0051"]}}