SlowMist has issued a security alert advising users to exercise caution when engaging in Vibe Coding or using mainstream integrated development environments (IDEs). The alert highlights a vulnerability where simply using the "Open Folder" function on a project can trigger system command execution on both Windows and macOS platforms. Cursor users are particularly vulnerable, as opening a maliciously crafted project directory could lead to immediate system compromise. Several AI coding users have already been affected, prompting developers to avoid opening untrusted projects.