AI-Driven Development Tools Create New Browser Storage Vulnerability
A newly discovered vulnerability in AI-powered CLI and IDE tools exposes sensitive browser data to theft. When these tools automatically open HTML files without confirmation, malicious repositories can exfiltrate cookies, localStorage, and sessionStorage contents, including API keys and authentication tokens.