An external attacker could submit a pull request to any repository using Claude Code Action, wait for a reviewer to trigger the action, and then replace the PR title with a prompt injection payload…
No pages have linked to this URL yet.
Log in or sign up to submit feeds.