A malicious GitHub issue could reach CI workflow secrets and execute code through Anthropic’s Claude Code and Google’s Gemini CLI. Both vulnerabilities are patched, but OpenAI’s related Codex issue has no product update to install and requires workflow changes instead. Source
Read the full article at the source.
Comments (0)
No comments yet. Be the first to comment!