Cline A.I CyberSecurity Scoring
Cline
Company Information
Website:https://cline.bot/
Employees number:35
Number of followers:14,600
NAICS:5112
Industry Type:Software Development
Homepage:cline.bot
Cline Risk Score (AI oriented)
Between 700 and 749
ClineSoftware Development
Updated:
08/05/2026
08/05/2026
748/1000
Moderate
Ba
Cline Global Score (TPRM)
xxxx
ClineSoftware Development
Score locked

ClineModerate
Current Score
748Ba (MODERATE)
01000
1 incidents
-3 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
748
MAY 2026
751
Vulnerability
08 May 2026 • Cline
Cline: Cline Kanban WebSocket Vulnerability Enables Malicious Sites to Take Over AI Coding Agents
Critical Vulnerability in Cline AI Coding Agent Patched After Remote Exploitation Risk Discovered
748
CRITICAL-3
CLI1778243371
Critical Vulnerability in Cline AI Coding Agent Patched After Remote Exploitation Risk Discovered
A severe security flaw in Cline, a popular open-source AI coding agent, has been patched following the discovery of a CVSS 9.7 vulnerability that could allow attackers to hijack developers' machines, steal sensitive data, and execute arbitrary commands all without user interaction.
The vulnerability, identified by Oasis Security, resided in Cline’s local Kanban server, which facilitates real-time communication between the AI agent and its management interface. The server exposed a WebSocket listener on developers' machines but lacked critical security controls, including origin validation, authentication tokens, and CORS protections. This oversight created a browser security blind spot, enabling malicious websites to bypass standard defenses and connect to the server undetected.
Once exploited, attackers gained three high-impact capabilities:
1. Real-time intelligence gathering – Malicious JavaScript could extract a full snapshot of the developer’s workspace, including filesystem paths, Git branches, task details, and AI agent chat history.
2. Terminal hijacking & remote code execution – The server’s exposed terminal input channel allowed attackers to inject commands, which the AI agent executed as legitimate instructions, effectively granting unauthorized shell access.
3. Denial-of-service attacks – Threat actors could terminate active AI tasks, disrupting development workflows.
The attack required no phishing, malware, or social engineering only a developer visiting a compromised webpage while the vulnerable Kanban server was running. The flaw was responsibly disclosed and patched in Cline version 0.1.66.
Given the growing adoption of AI agents with deep system access, security teams are advised to audit similar local listener vulnerabilities and enforce host-based firewalls to restrict unauthorized port binding. The incident underscores the need for specialized access controls to monitor AI agent behavior and prevent command injection.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
APRIL 2026
751
MARCH 2026
751
FEBRUARY 2026
751
JANUARY 2026
751
DECEMBER 2025
751
NOVEMBER 2025
751
OCTOBER 2025
751
SEPTEMBER 2025
751
AUGUST 2025
751
JULY 2025
751
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Cline ??
What was Cline's A.I Rankiteo Cyber Score in May 2026 ??
What was Cline's A.I Rankiteo Cyber Score in April 2026 ??
What was Cline's A.I Rankiteo Cyber Score in March 2026 ??
What was Cline's A.I Rankiteo Cyber Score in February 2026 ??
What was Cline's A.I Rankiteo Cyber Score in January 2026 ??
What was Cline's A.I Rankiteo Cyber Score in December 2025 ??
What was Cline's A.I Rankiteo Cyber Score in November 2025 ??
What was Cline's A.I Rankiteo Cyber Score in October 2025 ??
What was Cline's A.I Rankiteo Cyber Score in September 2025 ??
What was Cline's A.I Rankiteo Cyber Score in August 2025 ??
What was Cline's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on Cline's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Cline ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Cline's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?