Catalog / Zed

Zed security advisories

All 12 advisories Zed has published with an identifier, newest first. Severity is the one its publisher assigned, and the fix is the release the publisher named. Nothing on this page is our judgement.

Advisories
1212 carry a CVE
critical
1
high
9
medium
2
Fix in the archive
5of 12 matched to a release
Oldest
11 Aug 20251.1 years ago

7 of these point at a version older than anything the archive holds, so there is no release page to link. That is a gap in what was collected, not evidence that the fix does not exist. This page is a copy of what the publisher published, kept for reference. The authoritative source for a security question is the publisher, and an advisory missing from here is not evidence that none exists. What this page does and does not tell you sets out the limits in full.

Newest first

Every product
CVE-2026-44461high

Remote Command Injection via Unquoted Environment Variable Keys (SSH / WSL Remote) in Zed v0.225.9

GHSA-63qj-jc2q-7hg5Fixed in 0.227.1
CVE-2026-27800high

Zip Slip Path Traversal in Extension Archive Extraction

GHSA-v385-xh3h-rrfrFixed in 0.224.4, not held here
CVE-2026-27976high

Zed Extension Sandbox Escape via Tar Symlink Following

GHSA-59p4-3mhm-qm3rFixed in 0.224.4, not held here
CVE-2026-27967high

Symlink Escape in Agent File Tools

GHSA-786m-x2vc-5235Fixed in 0.225.9, not held here
CVE-2026-25805medium

Parameter Values are not shown for MCP Tool Calls. Users cannot detect tool poisoning.

GHSA-f2g4-87h6-4pxqFixed in 0.219.4, not held here
CVE-2025-68433high

Zed IDE MCP Context Server Configuration Arbitrary Code Execution

GHSA-cv6g-cmxc-vw8jFixed in 0.218.2, not held here
CVE-2025-68432high

Zed IDE LSP Binary Configuration Arbitrary Code Execution

GHSA-29cp-2hmh-hcxjFixed in 0.218.2, not held here
CVE-2025-55012critical

AI Agent Remote Code Execution

GHSA-x34m-39xw-g2wrFixed in 0.197.3, not held here