threat-intel Claude Code GitHub Action Flaw Let One Malicious Issue Hijack Repositories A security researcher discovered a flaw in Anthropic's Claude Code GitHub Action that allowed attackers to take over vulnerable public repositories by exploiting a permissive trigger check and prompt injection techniques. The vulnerability stemmed from the action's trust in GitHub Apps and the ability to inject command… The Hacker News · Jun 4, 2026 High prompt-injectiongithub-actionsai-security