VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_8eab464cc4e63c7731109fc3d551bf8e

Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets

Published Aug 7, 2026

A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic's and Google's own coding-agent repositories. On OpenAI's, it was enough to hijack the next agent run.

Novee Security ran the attack against each vendor's agent in the configuration that the vendor ships by default, and presented the work at Black Hat USA on August 5.

Affected AI Products

claude code anthropic openai claude gemini
Get the weekly digest. Every Monday: top AI security stories of the week. Free.