Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Cline

Cline Vendor Cyber Rating & Cyber Score

cline.bot

With over 5M+ installs and 57k+ GitHub stars, a community that grew 4,704% year over year. Cline is the leading open-source AI coding agent. Trusted by the world's largest engineering organizations and individual developers alike, Cline is model agnostic, provider agnostic, and IDE agnostic, meeting engineers everywhere they work while keeping code on your infrastructure. Teams choose Cline because it's the only coding agent that combines cutting-edge capability with enterprise-grade security, using existing provider contracts directly with zero markup. Cline has raised $32M in combined Series A and Seed funding, led by Emergence Capital and Pace Capital, with participation from 1984 Ventures, Essence VC, and Cox Exponential.


Cline A.I CyberSecurity Scoring

Cline
Company Information
Website:https://cline.bot/
Employees number:35
Number of followers:14,600
NAICS:5112
Industry Type:Software Development
Homepage:cline.bot
Cline Risk Score (AI oriented)
Between 700 and 749
logo
ClineSoftware Development
Updated:
08/05/2026
748/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Cline Global Score (TPRM)
xxxx
logo
ClineSoftware Development
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Cline
ClineModerate
Current Score
748Ba (MODERATE)
01000
1 incidents
-3 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
748Before Incident
MAY 2026
751Before Incident
Vulnerability
08 May 2026Cline
Cline: Cline Kanban WebSocket Vulnerability Enables Malicious Sites to Take Over AI Coding Agents

Critical Vulnerability in Cline AI Coding Agent Patched After Remote Exploitation Risk Discovered

748After Incident
CRITICAL-3
CLI1778243371
Critical Vulnerability in Cline AI Coding Agent Patched After Remote Exploitation Risk Discovered A severe security flaw in Cline, a popular open-source AI coding agent, has been patched following the discovery of a CVSS 9.7 vulnerability that could allow attackers to hijack developers' machines, steal sensitive data, and execute arbitrary commands all without user interaction. The vulnerability, identified by Oasis Security, resided in Cline’s local Kanban server, which facilitates real-time communication between the AI agent and its management interface. The server exposed a WebSocket listener on developers' machines but lacked critical security controls, including origin validation, authentication tokens, and CORS protections. This oversight created a browser security blind spot, enabling malicious websites to bypass standard defenses and connect to the server undetected. Once exploited, attackers gained three high-impact capabilities: 1. Real-time intelligence gathering – Malicious JavaScript could extract a full snapshot of the developer’s workspace, including filesystem paths, Git branches, task details, and AI agent chat history. 2. Terminal hijacking & remote code execution – The server’s exposed terminal input channel allowed attackers to inject commands, which the AI agent executed as legitimate instructions, effectively granting unauthorized shell access. 3. Denial-of-service attacks – Threat actors could terminate active AI tasks, disrupting development workflows. The attack required no phishing, malware, or social engineering only a developer visiting a compromised webpage while the vulnerable Kanban server was running. The flaw was responsibly disclosed and patched in Cline version 0.1.66. Given the growing adoption of AI agents with deep system access, security teams are advised to audit similar local listener vulnerabilities and enforce host-based firewalls to restrict unauthorized port binding. The incident underscores the need for specialized access controls to monitor AI agent behavior and prevent command injection.
INCIDENT DETAILS -
TYPE
Vulnerability Exploitation
IMPACT
Data Compromised: Filesystem paths, Git branches, task details, AI agent chat history, terminal commandsSystems Affected: Developers' machines running Cline AI coding agentDowntime: Disruption of development workflows due to denial-of-service attacksOperational Impact: Terminal hijacking, remote code execution, unauthorized shell access, task termination
DATA BREACH
Filesystem pathsGit branchesTask detailsAI agent chat historySensitivity Of Data: High (developer workspace data, terminal commands)Data Exfiltration: Yes (real-time intelligence gathering)
APRIL 2026
751Before Incident
MARCH 2026
751Before Incident
FEBRUARY 2026
751Before Incident
JANUARY 2026
751Before Incident
DECEMBER 2025
751Before Incident
NOVEMBER 2025
751Before Incident
OCTOBER 2025
751Before Incident
SEPTEMBER 2025
751Before Incident
AUGUST 2025
751Before Incident
JULY 2025
751Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Cline ?
?
What was Cline's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Cline's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Cline's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Cline's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Cline's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Cline's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Cline's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Cline's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Cline's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Cline's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Cline's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Cline's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Cline ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Cline's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?