A feature being disabled by default could leave users and their organizations vulnerable to commands that run automatically.
Source: ADnet
Source Link: https://www.zdnet.com/article/this-critical-cursor-security-flaw-could-expose-your-code-to-malware-how-to-fix-it/